5.5
CVSSv3

CVE-2019-3715

Published: 13/03/2019 Updated: 24/08/2020
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

RSA Archer versions, before 6.5 SP1, contain an information exposure vulnerability. Users' session information is logged in plain text in the RSA Archer log files. An authenticated malicious local user with access to the log files may obtain the exposed information to use it in further attacks.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

rsa archer grc platform 6.5

rsa archer grc platform

Mailing Lists

Restricted - Confidential -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 DSA-2019-025: RSA Archer GRC Platform Multiple Vulnerabilities Dell EMC Identifier: DSA-2019-025 CVE Identifier: CVE-2019-3715, CVE-2019-3716 Severity Rating: See below for scores of individual CVEs Affected Products: RSA Archer versions prior to 65 P1 (CVE-2019-371 ...