RSA Archer 6.8.00500.1003 P5 allows Unrestricted Upload of a File with a Dangerous Type.
CVSS Vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:HRsa Archer
APPRsa6.0.0 – 6.9.3.4 (excl.)6.10.0.0 – 6.10.0.2 (excl.)
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
CWE
References
Related vulnerabilities
CVE-2022-30584CRITICAL9.6PL ✓same product
RSA Archer – błąd kontroli dostępu w module SSO ADFS (RCE/przejęcie systemu)
CVE-2019-3758CRITICAL9.8PL ✓same product
RSA Archer — obejście uwierzytelnienia przez niewystarczające dane logowania
CVE-2022-37318HIGH7.0same product
Archer Platform 6.9 SP2 P2 before 6.11 P3 (6.11.0.3) contain a reflected XSS vulnerability. A remote unauthent...
CVE-2022-37317HIGH7.6same product
Archer Platform 6.x before 6.11 P3 contain an HTML injection vulnerability. An authenticated remote attacker c...
CVE-2020-5334HIGH8.2same product
RSA Archer, versions prior to 6.7 P2 (6.7.0.2), contains a Document Object Model (DOM) based cross-site script...