CVE-2015-6029

CWE-2543 documents3 sources
Severity
5.0MEDIUM
EPSS
6.9%
top 8.58%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedNov 4
Latest updateMay 17

Description

HP ArcSight Logger before 6.0 P2 does not limit attempts to authenticate to the SOAP interface, which makes it easier for remote attackers to obtain access via a brute-force approach.

CVSS vector

AV:N/AC:L/C:P/I:N/A:NExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

NVDhp/arcsight_logger6.0.0.7307.1

🔴Vulnerability Details

2
GHSA
GHSA-h4fg-w6hc-gj2p: HP ArcSight Logger before 62022-05-17
CVEList
CVE-2015-6029: HP ArcSight Logger before 62015-11-04
CVE-2015-6029 (MEDIUM CVSS 5) | HP ArcSight Logger before 6.0 P2 do | cvebase.io