HP ArcSight ESM and ArcSight ESM Express Multiple Security Vulnerabilities
BID:100935
CVE-2017-13986 | CVE-2017-13987 | CVE-2017-13988 | CVE-2017-13989 | CVE-2017-13990 | CVE-2017-13991 |Info
HP ArcSight ESM and ArcSight ESM Express Multiple Security Vulnerabilities
| Bugtraq ID: | 100935 |
| Class: | Design Error |
| CVE: |
CVE-2017-13986 CVE-2017-13987 CVE-2017-13988 CVE-2017-13989 CVE-2017-13990 CVE-2017-13991 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 20 2017 12:00AM |
| Updated: | Sep 20 2017 12:00AM |
| Credit: | Andy Tan and Dimitris Karetsos |
| Vulnerable: |
HP ArcSight ESM 6.9.1 HP ArcSight ESM 6.8P1 HP ArcSight ESM 6.8c P1 HP ArcSight ESM 6.8c HP ArcSight ESM 6.8 HP ArcSight ESM 6.5 HP ArcSight ESM 6.0 |
| Not Vulnerable: |
HP ArcSight ESM 6.9.1c Patch 4 HP ArcSight ESM 6.11.0 Patch 1 |
Discussion
HP ArcSight ESM and ArcSight ESM Express Multiple Security Vulnerabilities
HP ArcSight ESM and ArcSight ESM Express are prone to the following security vulnerabilities:
1. A cross-site scripting vulnerability
2. An access-control bypass vulnerability
3. Multiple unauthorized access vulnerabilities
4. Multiple information-disclosure vulnerabilities
An attacker may leverage these issues to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site, steal cookie-based authentication credentials, obtain potentially sensitive information, download arbitrary files, bypass certain security restrictions and perform unauthorized actions. This may lead to further attacks.
HP ArcSight ESM and ArcSight ESM Express are prone to the following security vulnerabilities:
1. A cross-site scripting vulnerability
2. An access-control bypass vulnerability
3. Multiple unauthorized access vulnerabilities
4. Multiple information-disclosure vulnerabilities
An attacker may leverage these issues to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site, steal cookie-based authentication credentials, obtain potentially sensitive information, download arbitrary files, bypass certain security restrictions and perform unauthorized actions. This may lead to further attacks.
Exploit / POC
HP ArcSight ESM and ArcSight ESM Express Multiple Security Vulnerabilities
An attacker can use browser or readily available tools to exploit these issues. To exploit cross-site scripting issue, the attacker must entice an unsuspecting victim to follow a malicious URI.
An attacker can use browser or readily available tools to exploit these issues. To exploit cross-site scripting issue, the attacker must entice an unsuspecting victim to follow a malicious URI.
Solution / Fix
HP ArcSight ESM and ArcSight ESM Express Multiple Security Vulnerabilities
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
HP ArcSight ESM and ArcSight ESM Express Multiple Security Vulnerabilities
References:
References:
- HP ArcSight ESM Homepage (HP)
- HP Homepage (HP)