Lucene search

K
nvd[email protected]NVD:CVE-2022-26331
HistoryAug 31, 2022 - 4:15 p.m.

CVE-2022-26331

2022-08-3116:15:10
CWE-79
web.nvd.nist.gov
2
information disclosure
self cross-site scripting
remote exploitation
micro focus arcsight logger
vulnerabilities
version 7.2.2

CVSS3

6.1

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

EPSS

0.001

Percentile

33.5%

Potential vulnerabilities have been identified in Micro Focus ArcSight Logger. The vulnerabilities could be remotely exploited resulting in Information Disclosure, or Self Cross-Site Scripting (XSS). This issue affects: Micro Focus ArcSight Logger versions prior to v7.2.2 version and prior versions.

Affected configurations

Nvd
Node
microfocusarcsight_loggerRange<7.2.2
VendorProductVersionCPE
microfocusarcsight_logger*cpe:2.3:a:microfocus:arcsight_logger:*:*:*:*:*:*:*:*

CVSS3

6.1

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

EPSS

0.001

Percentile

33.5%

Related for NVD:CVE-2022-26331