Vulnerability Description
Mitigates a stored cross site scripting issue in ArcSight Logger versions prior to 6.7.1
CVSS Score
4.6
MEDIUM
CVSS:3.0/AV:A/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Hp | Arcsight Logger | < 6.7.1 |
Related Weaknesses (CWE)
References
- http://www.securityfocus.com/bid/109363
- https://community.microfocus.com/t5/Logger/Logger-Release-Notes-6-71/ta-p/179025
- http://www.securityfocus.com/bid/109363
- https://community.microfocus.com/t5/Logger/Logger-Release-Notes-6-71/ta-p/179025
FAQ
What is CVE-2019-3485?
CVE-2019-3485 is a vulnerability with a CVSS score of 4.6 (MEDIUM). Mitigates a stored cross site scripting issue in ArcSight Logger versions prior to 6.7.1
How severe is CVE-2019-3485?
CVE-2019-3485 has been rated MEDIUM with a CVSS base score of 4.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-3485?
Check the references section above for vendor advisories and patch information. Affected products include: Hp Arcsight Logger.