7.2
CVE-2015-6030
- EPSS 0.61%
- Veröffentlicht 04.11.2015 03:59:08
- Zuletzt bearbeitet 06.05.2026 22:30:45
- Erkennungen
HP ArcSight Logger 6.0.0.7307.1, ArcSight Command Center 6.8.0.1896.0, and ArcSight Connector Appliance 6.4.0.6881.3 use the root account to execute files owned by the arcsight user, which might allow local users to gain privileges by leveraging arcsight account access.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Hp ≫ Arcsight Connector Appliance Version <= 6.4.0.6881.3
Hp ≫ Arcsight Logger Version 6.0.0.7307.1
Hp ≫ Arcsight Command Center Version 6.8.0.1896.0
Hp ≫ Arcsight Connectors Version <= 7.1.3
Hp ≫ Arcsight Express Version 4.0
Hp ≫ Arcsight Express Version 4.0 Update p1
Hp ≫ Arcsight Management Center Update p1 Version <= 2.0
Microfocus ≫ Arcsight Enterprise Security Manager Version <= 6.5
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.61% | 0.443 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.2 | 3.9 | 10 |
AV:L/AC:L/Au:N/C:C/I:C/A:C
|
http://www.kb.cert.org/vuls/id/842252
http://www.securitytracker.com/id/1034072
http://www.securitytracker.com/id/1034073
https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04872416