Vulnerabilities > Archerirm > Archer > High

DATE CVE VULNERABILITY TITLE RISK
2023-12-12 CVE-2023-48641 Authorization Bypass Through User-Controlled Key vulnerability in Archerirm Archer
Archer Platform 6.x before 6.14 P1 HF2 (6.14.0.1.2) contains an insecure direct object reference vulnerability.
network
low complexity
archerirm CWE-639
8.8
2023-07-14 CVE-2023-32761 Cross-Site Request Forgery (CSRF) vulnerability in Archerirm Archer 6.10.0.3/6.3.0.0/6.9.3.4
Cross Site Request Forgery (CSRF) vulnerability in Archer Platform before v.6.13 and fixed in v.6.12.0.6 and v.6.13.0 allows an authenticated attacker to execute arbitrary code via a crafted request.
network
low complexity
archerirm CWE-352
8.0