PT-2023-22832 · Rsa · Archer Platform

Published

2023-05-01

·

Updated

2025-01-30

·

CVE-2023-30639

CVSS v3.1

7.1

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions Archer Platform versions 6.8 through 6.12 P6 before HF1 (6.12.0.6.1)
Description The issue allows a remote authenticated malicious user to potentially exploit a stored XSS vulnerability, storing malicious HTML or JavaScript code in a trusted application data store.
Recommendations For versions 6.8 through 6.12 P6 before HF1 (6.12.0.6.1), update to version 6.12 P6 HF1 (6.12.0.6.1) or 6.11.P4 (6.11.0.4) to resolve the issue.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2023-30639

Affected Products

Archer Platform