HP ArcSight Logger prior to 6.0 P2 does not limit attempts to authenticate to the SOAP interface, which makes it easier for remote malicious users to obtain access via a brute-force approach.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
hp arcsight logger 6.0.0.7307.1 |