HP ArcSight Logger before 6.0 P2 does not limit attempts to authenticate to the SOAP interface, which makes it easier for remote attackers to obtain access via a brute-force approach.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Arcsight_logger | Hp | 6.0.0.7307.1 (including) | 6.0.0.7307.1 (including) |