RSA Archer, versions prior to 6.7 P2 (6.7.0.2), contain a cross-site request forgery vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability by tricking a victim application user to send arbitrary requests to the vulnerable application to perform server operations with the privileges of the authenticated victim user.
2020-05-04T19:15:13.533
2024-11-21T05:33:56.113
Modified
CVSSv3.1: 5.0 (MEDIUM)
AV:N/AC:M/Au:N/C:P/I:P/A:P
8.6
6.4