← Back

CVE-2023-48641

nvd nist
Published: Dec 12, 2023Modified: Nov 21, 2024

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD

Description

Archer Platform 6.x before 6.14 P1 HF2 (6.14.0.1.2) contains an insecure direct object reference vulnerability. An authenticated malicious user in a multi-instance installation could potentially exploit this vulnerability by manipulating application resource references in user requests to bypass authorization checks, in order to gain execute access to AWF application resources.

Affected (2)

Products: Archerirm: Archer
1 product
Archer
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 6.14.0.1.2
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 6.13.0.3

Timeline

No history available yet.