Vulnerabilities > RSA > Archer > 6.6.0.8

DATE CVE VULNERABILITY TITLE RISK
2022-03-30 CVE-2022-26950 Open Redirect vulnerability in RSA Archer
Archer 6.x through 6.9 P2 (6.9.0.2) is affected by an open redirect vulnerability.
network
low complexity
rsa CWE-601
6.1
2022-03-30 CVE-2022-26951 Cross-site Scripting vulnerability in RSA Archer
Archer 6.x through 6.10 (6.10.0.0) contains a reflected XSS vulnerability.
network
low complexity
rsa CWE-79
6.1
2020-05-04 CVE-2020-5337 Open Redirect vulnerability in RSA Archer
RSA Archer, versions prior to 6.7 P1 (6.7.0.1), contain a URL redirection vulnerability.
network
low complexity
rsa CWE-601
6.1
2020-05-04 CVE-2020-5336 Injection vulnerability in RSA Archer
RSA Archer, versions prior to 6.7 P1 (6.7.0.1), contain a URL injection vulnerability.
network
low complexity
rsa CWE-74
6.1
2020-05-04 CVE-2020-5335 Cross-Site Request Forgery (CSRF) vulnerability in RSA Archer
RSA Archer, versions prior to 6.7 P2 (6.7.0.2), contain a cross-site request forgery vulnerability.
network
low complexity
rsa CWE-352
8.8
2020-05-04 CVE-2020-5334 Cross-site Scripting vulnerability in RSA Archer
RSA Archer, versions prior to 6.7 P2 (6.7.0.2), contains a Document Object Model (DOM) based cross-site scripting vulnerability.
network
low complexity
rsa CWE-79
6.1
2020-05-04 CVE-2020-5333 Incorrect Authorization vulnerability in RSA Archer
RSA Archer, versions prior to 6.7 P3 (6.7.0.3), contain an authorization bypass vulnerability in the REST API.
network
low complexity
rsa CWE-863
4.3
2020-05-04 CVE-2020-5332 OS Command Injection vulnerability in RSA Archer
RSA Archer, versions prior to 6.7 P3 (6.7.0.3), contain a command injection vulnerability.
network
low complexity
rsa CWE-78
7.2
2020-05-04 CVE-2020-5331 Information Exposure vulnerability in RSA Archer
RSA Archer, versions prior to 6.7 P3 (6.7.0.3), contain an information exposure vulnerability.
local
low complexity
rsa CWE-200
5.5