CVE-2019-11656

MEDIUM

Micro Focus ArcSight Logger <6.7.1.8262 - XSS

Title source: llm
STIX 2.1

Description

Stored XSS vulnerability in Micro Focus ArcSight Logger, affects versions prior to Logger 6.7.1 HotFix 6.7.1.8262.0. This vulnerability could allow Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting').

Scores

CVSS v3 5.4
EPSS 0.0024
EPSS Percentile 46.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

Details

CWE
CWE-79
Status published
Products (2)
hp/arcsight_logger 6.7.1
hp/arcsight_logger < 6.7.1
Published Oct 04, 2019
Tracked Since Feb 18, 2026