PT-2022-20190 · Rsa · Archer Platform
Published
2022-05-26
·
Updated
2023-08-08
·
CVE-2022-30585
CVSS v3.1
6.5
Medium
| Vector | AC:L/AV:N/A:N/C:N/I:H/PR:N/S:U/UI:R |
Name of the Vulnerable Software and Affected Versions
Archer Platform versions prior to 6.11
Description
The REST API in Archer Platform contains an Authorization Bypass issue. A remote authenticated malicious user could potentially exploit this to view sensitive information.
Recommendations
For versions prior to 6.11, update to version 6.11 or later to resolve the issue.
As a temporary workaround, consider restricting access to the REST API until a patch is available.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Archer Platform