CVE-2024-2834: Micro Focus Arcsight Management Center

High severity, CVSS 8.7. EPSS: 0.5% chance of exploitation in the next 30 days.

A Stored Cross-Site Scripting (XSS) vulnerability has been identified in OpenText ArcSight Management Center and ArcSight Platform. The vulnerability could be remotely exploited.

Affected products

  • Micro Focus Arcsight Management Center: before 3.2.2P1 (fixed in 3.2.2P1); from 3.2.3, before 3.2.3P1 (fixed in 3.2.3P1)
  • Opentext Arcsight Management Center: before 3.2.2 P1 (fixed in 3.2.2 P1); from 3.2.3, before 3.2.3 P1 (fixed in 3.2.3 P1)
  • Opentext Arcsight Platform: before 23.3.2 (fixed in 23.3.2); from 24.1.0, before 24.1.2 (fixed in 24.1.2)

Published 2024-04-08. Last modified 2026-06-17.