- Description
- Archer Platform 6.3 before 6.11 (6.11.0.0) contains an Improper Access Control Vulnerability within SSO ADFS functionality that could potentially be exploited by malicious users to compromise the affected system. 6.10 P3 (6.10.0.3) and 6.9 SP3 P4 (6.9.3.4) are also fixed releases.
- Source
- cve@mitre.org
- NVD status
- Modified
CVSS 3.1
- Type
- Primary
- Base score
- 8.8
- Impact score
- 5.9
- Exploitability score
- 2.8
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- Severity
- HIGH
CVSS 2.0
- Type
- Primary
- Base score
- 9
- Impact score
- 10
- Exploitability score
- 8
- Vector string
- AV:N/AC:L/Au:S/C:C/I:C/A:C
- Hype score
- Not currently trending
[
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:rsa:archer:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "429FCBC1-7176-4FC2-A341-AEE96C74DF38",
"versionEndExcluding": "6.9.3.4",
"versionStartIncluding": "6.3"
},
{
"criteria": "cpe:2.3:a:rsa:archer:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "FBDEB7C9-7D9A-4D40-97A0-209E1969F755",
"versionEndExcluding": "6.10.0.3",
"versionStartIncluding": "6.10.0.0"
}
],
"operator": "OR"
}
]
}
]