Archer Platform 6.3 before 6.11 (6.11.0.0) contains an Improper Access Control Vulnerability within SSO ADFS functionality that could potentially be exploited by malicious users to compromise the affected system. 6.10 P3 (6.10.0.3) and 6.9 SP3 P4 (6.9.3.4) are also fixed releases.
References
Link | Resource |
---|---|
https://www.archerirm.community/t5/releases/tkb-p/releases | Release Notes Vendor Advisory |
https://www.archerirm.community/t5/security-advisories/archer-update-for-multiple-vulnerabilities/ta-p/677341 | Vendor Advisory |
https://www.archerirm.community/t5/releases/tkb-p/releases | Release Notes Vendor Advisory |
https://www.archerirm.community/t5/security-advisories/archer-update-for-multiple-vulnerabilities/ta-p/677341 | Vendor Advisory |
Configurations
History
21 Nov 2024, 07:02
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : 9.0
v3 : 9.6 |
References | () https://www.archerirm.community/t5/releases/tkb-p/releases - Release Notes, Vendor Advisory | |
References | () https://www.archerirm.community/t5/security-advisories/archer-update-for-multiple-vulnerabilities/ta-p/677341 - Vendor Advisory |
08 Aug 2023, 14:21
Type | Values Removed | Values Added |
---|---|---|
CWE | NVD-CWE-Other |
Information
Published : 2022-05-26 20:15
Updated : 2024-11-21 07:02
NVD link : CVE-2022-30584
Mitre link : CVE-2022-30584
CVE.ORG link : CVE-2022-30584
JSON object : View
Products Affected
rsa
- archer
CWE