Security Advisory
CVE-2015-6029
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
HP ArcSight Logger before 6.0 P2 does not limit attempts to authenticate to the SOAP interface, which makes it easier for remote attackers to obtain access via a brute-force approach.