Vulnerabilities > RSA > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-01-29 CVE-2020-29536 Use of a Broken or Risky Cryptographic Algorithm vulnerability in RSA Archer
Archer before 6.8 P2 (6.8.0.2) is affected by a path exposure vulnerability.
network
low complexity
rsa CWE-327
4.0
2020-11-18 CVE-2020-26884 Injection vulnerability in RSA Archer 6.8/6.8.0.3/6.9
RSA Archer 6.8 through 6.8.0.3 and 6.9 contains a URL injection vulnerability.
network
rsa CWE-74
4.3
2020-05-04 CVE-2020-5337 Open Redirect vulnerability in RSA Archer
RSA Archer, versions prior to 6.7 P1 (6.7.0.1), contain a URL redirection vulnerability.
network
rsa CWE-601
5.8
2020-05-04 CVE-2020-5336 Injection vulnerability in RSA Archer
RSA Archer, versions prior to 6.7 P1 (6.7.0.1), contain a URL injection vulnerability.
network
rsa CWE-74
5.8
2020-05-04 CVE-2020-5335 Cross-Site Request Forgery (CSRF) vulnerability in RSA Archer
RSA Archer, versions prior to 6.7 P2 (6.7.0.2), contain a cross-site request forgery vulnerability.
network
rsa CWE-352
6.8
2020-05-04 CVE-2020-5334 Cross-site Scripting vulnerability in RSA Archer
RSA Archer, versions prior to 6.7 P2 (6.7.0.2), contains a Document Object Model (DOM) based cross-site scripting vulnerability.
network
rsa CWE-79
4.3
2020-05-04 CVE-2020-5333 Incorrect Authorization vulnerability in RSA Archer
RSA Archer, versions prior to 6.7 P3 (6.7.0.3), contain an authorization bypass vulnerability in the REST API.
network
low complexity
rsa CWE-863
4.0
2019-12-03 CVE-2019-18574 Cross-site Scripting vulnerability in multiple products
RSA Authentication Manager software versions prior to 8.4 P8 contain a stored cross-site scripting vulnerability in the Security Console.
network
low complexity
rsa emc CWE-79
4.8
2019-09-18 CVE-2019-3756 Information Exposure vulnerability in RSA Archer
RSA Archer, versions prior to 6.6 P3 (6.6.0.3), contain an information disclosure vulnerability.
network
low complexity
rsa CWE-200
4.0
2019-05-15 CVE-2019-3724 Unspecified vulnerability in RSA Netwitness Platform and Security Analytics
RSA Netwitness Platform versions prior to 11.2.1.1 is vulnerable to an Authorization Bypass vulnerability.
network
low complexity
rsa
4.0