Vulnerabilities > RSA > Archer > 6.9.3.3

DATE CVE VULNERABILITY TITLE RISK
2022-08-25 CVE-2022-37316 Unspecified vulnerability in RSA Archer
Archer Platform 6.8 before 6.11 P3 (6.11.0.3) contains an improper API access control vulnerability in a multi-instance system that could potentially present unauthorized metadata to an authenticated user of the affected system.
network
low complexity
rsa
6.5
2022-08-25 CVE-2022-37317 Cross-site Scripting vulnerability in RSA Archer
Archer Platform 6.x before 6.11 P3 contain an HTML injection vulnerability.
network
low complexity
rsa CWE-79
5.4
2022-08-25 CVE-2022-37318 Cross-site Scripting vulnerability in RSA Archer
Archer Platform 6.9 SP2 P2 before 6.11 P3 (6.11.0.3) contain a reflected XSS vulnerability.
network
low complexity
rsa CWE-79
6.1
2022-06-02 CVE-2021-33615 Unrestricted Upload of File with Dangerous Type vulnerability in RSA Archer
RSA Archer 6.8.00500.1003 P5 allows Unrestricted Upload of a File with a Dangerous Type.
network
high complexity
rsa CWE-434
7.5
2022-05-26 CVE-2022-30584 Unspecified vulnerability in RSA Archer
Archer Platform 6.3 before 6.11 (6.11.0.0) contains an Improper Access Control Vulnerability within SSO ADFS functionality that could potentially be exploited by malicious users to compromise the affected system.
network
low complexity
rsa
8.8
2022-05-26 CVE-2022-30585 Unspecified vulnerability in RSA Archer
The REST API in Archer Platform 6.x before 6.11 (6.11.0.0) contains an Authorization Bypass Vulnerability.
network
low complexity
rsa
6.5
2022-03-30 CVE-2022-26951 Cross-site Scripting vulnerability in RSA Archer
Archer 6.x through 6.10 (6.10.0.0) contains a reflected XSS vulnerability.
network
low complexity
rsa CWE-79
6.1