7.2

CVE-2015-6030

HP ArcSight Logger 6.0.0.7307.1, ArcSight Command Center 6.8.0.1896.0, and ArcSight Connector Appliance 6.4.0.6881.3 use the root account to execute files owned by the arcsight user, which might allow local users to gain privileges by leveraging arcsight account access.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Hp ≫ Arcsight Connector Appliance Version <= 6.4.0.6881.3
Hp ≫ Arcsight Logger Version 6.0.0.7307.1
Hp ≫ Arcsight Command Center Version 6.8.0.1896.0
Hp ≫ Arcsight Connectors Version <= 7.1.3
Hp ≫ Arcsight Express Version 4.0
Hp ≫ Arcsight Express Version 4.0 Update p1
Hp ≫ Arcsight Management Center Update p1 Version <= 2.0
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.61% 0.443
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://www.kb.cert.org/vuls/id/842252
Third Party Advisory
US Government Resource
http://www.securitytracker.com/id/1034072
Third Party Advisory
VDB Entry
http://www.securitytracker.com/id/1034073
Third Party Advisory
VDB Entry
https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04872416
Third Party Advisory