6.5
CVSSv2

CVE-2018-11060

Published: 24/07/2018 Updated: 09/10/2019
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 578
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

RSA Archer, versions before 6.4.0.1, contain an authorization bypass vulnerability in the REST API. A remote authenticated malicious Archer user could potentially exploit this vulnerability to elevate their privileges.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

rsa archer

rsa archer 6.4.0.0

Mailing Lists

-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 DSA-2018-130: RSA Archer® Multiple Vulnerabilities Dell EMC Identifier: DSA-2018-130 CVE Identifier: CVE-2018-11059, CVE-2018-11060 Severity Rating: See below for scores of individual CVEs Severity: High Affected Products: RSA Archer version 64 RSA Archer versions 63x RSA Archer versions 6 ...