Vulnerabilities > Archerirm
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-05-06 | CVE-2024-34092 | Insufficient Session Expiration vulnerability in Archerirm Archer An issue was discovered in Archer Platform 6 before 2024.04. | 8.8 |
2024-05-06 | CVE-2024-34093 | Unspecified vulnerability in Archerirm Archer An issue was discovered in Archer Platform 6 before 2024.03. | 5.3 |
2024-03-08 | CVE-2024-26309 | Unspecified vulnerability in Archerirm Archer Archer Platform 6.x before 6.14 P2 HF2 (6.14.0.2.2) contains a sensitive information disclosure vulnerability. | 7.5 |
2024-03-08 | CVE-2024-26313 | Unspecified vulnerability in Archerirm Archer Archer Platform 6.x before 6.14 P2 HF2 (6.14.0.2.2) contains a stored cross-site scripting (XSS) vulnerability. | 5.4 |
2024-02-21 | CVE-2024-26310 | Unspecified vulnerability in Archerirm Archer Archer Platform 6.8 before 6.14 P2 (6.14.0.2) contains an improper access control vulnerability. | 4.3 |
2023-12-12 | CVE-2023-48641 | Authorization Bypass Through User-Controlled Key vulnerability in Archerirm Archer Archer Platform 6.x before 6.14 P1 HF2 (6.14.0.1.2) contains an insecure direct object reference vulnerability. | 8.8 |
2023-12-12 | CVE-2023-48642 | Cross-site Scripting vulnerability in Archerirm Archer Archer Platform 6.x before 6.13 P2 (6.13.0.2) contains an authenticated HTML content injection vulnerability. | 5.4 |
2023-10-17 | CVE-2023-45357 | Exposure of Resource to Wrong Sphere vulnerability in Archerirm Archer Archer Platform 6.x before 6.13 P2 HF2 (6.13.0.2.2) contains a sensitive information disclosure vulnerability. | 6.5 |
2023-10-17 | CVE-2023-45358 | Cross-site Scripting vulnerability in Archerirm Archer Archer Platform 6.x before 6.13 P2 HF2 (6.13.0.2.2) contains a stored cross-site scripting (XSS) vulnerability. | 5.4 |
2023-07-14 | CVE-2023-32759 | Exposure of Resource to Wrong Sphere vulnerability in Archerirm Archer An issue in Archer Platform before v.6.13 and fixed in 6.12.0.6 and 6.13.0 allows an authenticated attacker to obtain sensitive information via a crafted URL. | 6.5 |