Vulnerabilities
Vulnerable Software
Hp:  >> Arcsight Smartconnectors  Security Vulnerabilities
The CWSAPI SOAP service in HP ArcSight SmartConnectors before 7.1.6 has a hardcoded password, which makes it easier for remote attackers to obtain administrative access by leveraging knowledge of this password.
CVSS Score
6.9
EPSS Score
0.032
Published
2015-11-04
HP ArcSight SmartConnectors before 7.1.6 do not verify X.509 certificates from Logger devices, which allows man-in-the-middle attackers to spoof devices and obtain sensitive information via a crafted certificate.
CVSS Score
6.8
EPSS Score
0.009
Published
2015-11-04


Contact Us

Shodan ® - All rights reserved