---
title: "Vulnerabilities Found in HP ArcSight Products"
url: "https://thecybersecurityplace.com/vulnerabilities-found-in-hp-arcsight-products/"
date: "2015-10-20T07:01:32+00:00"
section: "Software"
tags:
  - "Software Security"
source: "securityweek.com"
source_url: "http://www.securityweek.com/vulnerabilities-found-hp-arcsight-products?utm_source=feedburner&utm_medium=feed&utm_campaign=Feed%3A+Securityweek+%28SecurityWeek+RSS+Feed%29"
---

# Vulnerabilities Found in HP ArcSight Products

October 20, 2015 · Reported by securityweek.com

> HP has started releasing software updates for its ArcSight enterprise security management solution to address a series of vulnerabilities reported by researchers.
>
> An advisory published by CERT on Monday shows that ArcSight Logger, a log management software tool, is plagued by an authentication bypass vulnerability (CVE-2015-2136) that allows a remote, authenticated user without Logger Search permissions to conduct searches through the SOAP interface.

[Read the full article at securityweek.com](http://www.securityweek.com/vulnerabilities-found-hp-arcsight-products?utm_source=feedburner&utm_medium=feed&utm_campaign=Feed%3A+Securityweek+%28SecurityWeek+RSS+Feed%29)

**Tags:** [Software Security](https://thecybersecurityplace.com/tag/software-security/)
