Security Advisory

CVE-2017-14357

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2017-10-31 15:00:00
Last updated 2024-09-17 03:12:31
Assigner microfocus
State PUBLISHED

Description

A Reflected and Stored Cross-Site Scripting (XSS) vulnerability in HP ArcSight ESM and HP ArcSight ESM Express, in any 6.x version prior to 6.9.1c Patch 4 or 6.11.0 Patch 1. This vulnerability could be exploited remotely to allow Reflected and Stored Cross-Site Scripting (XSS)