Vulnerability Details CVE-2020-11838
Cross Site Scripting (XSS) vulnerability in Micro Focus ArcSight Management Center product, Affecting versions 2.6.1, 2.7.x, 2.8.x, 2.9.x prior to 2.9.4. The vulnerabilities could be remotely exploited resulting in Cross-Site Scripting (XSS) or information disclosure.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 43.1%
CVSS Severity
CVSS v3 Score 5.4
CVSS v2 Score 3.5
Products affected by CVE-2020-11838
-
cpe:2.3:a:microfocus:arcsight_management_center:2.6.1
-
cpe:2.3:a:microfocus:arcsight_management_center:2.7.0
-
cpe:2.3:a:microfocus:arcsight_management_center:2.8
-
cpe:2.3:a:microfocus:arcsight_management_center:2.8.1
-
cpe:2.3:a:microfocus:arcsight_management_center:2.9.0
-
cpe:2.3:a:microfocus:arcsight_management_center:2.9.1
-
cpe:2.3:a:microfocus:arcsight_management_center:2.9.2
-
cpe:2.3:a:microfocus:arcsight_management_center:2.9.3