CVE-2015-6863: HP Arcsight Logger

High severity, CVSS 7.3. EPSS: 2.3% chance of exploitation in the next 30 days.

HPE ArcSight Logger before 6.1P1 allows remote attackers to execute arbitrary code via unspecified input to the (1) Intellicus or (2) client-certificate upload component.

Affected products

  • HP Arcsight Logger: up to and including 6.1

Published 2016-01-16. Last modified 2026-06-17.