microfocus arcsight-management-center CVE-2018-6504 is a vulnerability in Micro Focus Arcsight Management Center
Published on September 20, 2018

MFSBGN03824 rev.1 - ArcSight Management Center, Insufficient Access Control, Reflected Cross Site Scripting, Access Control vulnerability, Cross-Site Request Forgery (CSRF), Unauthenticated File Download, Directory Traversal Vulnerability
A potential Cross-Site Request Forgery (CSRF) vulnerability has been identified in ArcSight Management Center (ArcMC) in all versions prior to 2.81. This vulnerability could be exploited to allow for Cross-Site Request Forgery (CSRF).

NVD


Products Associated with CVE-2018-6504

Want to know whenever a new CVE is published for Micro Focus Arcsight Management Center? stack.watch will email you.

 

Affected Versions

Micro Focus ArcSight Management Center Version all versions prior to 2.81 is affected by CVE-2018-6504

Exploit Probability

EPSS
0.11%
Percentile
29.85%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.