9.8
CVSSv3

CVE-2017-14356

Published: 31/10/2017 Updated: 07/11/2023
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

An SQL Injection vulnerability in HP ArcSight ESM and HP ArcSight ESM Express, in any 6.x version before 6.9.1c Patch 4 or 6.11.0 Patch 1. This vulnerability could be exploited remotely to allow SQL injection.

Vulnerable Product Search on Vulmon Subscribe to Product

hp arcsight enterprise security manager 6.8

hp arcsight enterprise security manager 6.5

hp arcsight enterprise security manager 6.0

hp arcsight enterprise security manager 6.11.0

hp arcsight enterprise security manager 6.0c

hp arcsight enterprise security manager 6.5c

hp arcsight enterprise security manager 6.8c

hp arcsight enterprise security manager 6.9.0c

hp arcsight enterprise security manager 6.9.1c

hp arcsight enterprise security manager express 6.11.0

hp arcsight enterprise security manager express 6.8

hp arcsight enterprise security manager express 6.8c

hp arcsight enterprise security manager express 6.5c

hp arcsight enterprise security manager express 6.5

hp arcsight enterprise security manager express 6.0c

hp arcsight enterprise security manager express 6.0

hp arcsight enterprise security manager express 6.9.1c

hp arcsight enterprise security manager express 6.9.0c