CVE-2023-45358
- EPSS 0.15%
- Published 17.10.2023 05:15:50
- Last modified 21.11.2024 08:26:48
Archer Platform 6.x before 6.13 P2 HF2 (6.13.0.2.2) contains a stored cross-site scripting (XSS) vulnerability. A remote authenticated malicious Archer user could potentially exploit this vulnerability to store malicious HTML or JavaScript code in a ...
CVE-2023-45357
- EPSS 0.1%
- Published 17.10.2023 05:15:50
- Last modified 21.11.2024 08:26:48
Archer Platform 6.x before 6.13 P2 HF2 (6.13.0.2.2) contains a sensitive information disclosure vulnerability. An authenticated attacker could potentially obtain access to sensitive information via a popup warning message. 6.14 (6.14.0) is also a fix...
CVE-2023-37224
- EPSS 0.05%
- Published 14.07.2023 18:15:10
- Last modified 21.11.2024 08:11:14
An issue in Archer Platform before v.6.13 fixed in v.6.12.0.6 and v.6.13.0 allows an authenticated attacker to obtain sensitive information via the log files.
CVE-2023-37223
- EPSS 0.53%
- Published 14.07.2023 18:15:10
- Last modified 21.11.2024 08:11:14
Cross Site Scripting (XSS) vulnerability in Archer Platform before v.6.13 and fixed in v.6.12.0.6 and v.6.13.0 allows a remote authenticated attacker to execute arbitrary code via a crafted malicious script.
- EPSS 0.33%
- Published 14.07.2023 18:15:09
- Last modified 21.11.2024 08:03:59
Cross Site Request Forgery (CSRF) vulnerability in Archer Platform before v.6.13 and fixed in v.6.12.0.6 and v.6.13.0 allows an authenticated attacker to execute arbitrary code via a crafted request.
CVE-2023-32760
- EPSS 0.17%
- Published 14.07.2023 18:15:09
- Last modified 21.11.2024 08:03:59
An issue in Archer Platform before v.6.13 fixed in v.6.12.0.6 and v.6.13.0 allows an authenticated attacker to obtain sensitive information via API calls related to data feeds and data publication.
CVE-2023-32759
- EPSS 0.17%
- Published 14.07.2023 18:15:09
- Last modified 21.11.2024 08:03:59
An issue in Archer Platform before v.6.13 and fixed in 6.12.0.6 and 6.13.0 allows an authenticated attacker to obtain sensitive information via a crafted URL.
CVE-2023-30639
- EPSS 0.21%
- Published 01.05.2023 22:15:09
- Last modified 30.01.2025 16:15:29
Archer Platform 6.8 before 6.12 P6 HF1 (6.12.0.6.1) contains a stored XSS vulnerability. A remote authenticated malicious Archer user could potentially exploit this vulnerability to store malicious HTML or JavaScript code in a trusted application dat...