CVE-2015-6029 Information

Description

HP ArcSight Logger before 6.0 P2 does not limit attempts to authenticate to the SOAP interface which makes it easier for remote attackers to obtain access via a brute-force approach.

Reference

http://www.kb.cert.org/vuls/id/842252 http://www.securityfocus.com/bid/77128 https://h20564.www2.hpe.com/hpsc/doc/public/display?docId=emr_na-c04863612

Share on: