CVE-2017-4999

EUVD-2017-14109
EMC RSA Archer 5.4.1.3, 5.5.3.1, 5.5.2.3, 5.5.2, 5.5.1.3.1, 5.5.1.1 is affected by an authorization bypass through user-controlled key vulnerability in Discussion Forum Messages. A remote low privileged attacker may potentially exploit this vulnerability to elevate their privileges and view other users' discussion forum messages.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.5 MEDIUM
NETWORK
LOW
LOW
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 63%
Affected Products (NVD)
VendorProductVersion
emcrsa_archer_egrc
5.4.1.3
emcrsa_archer_egrc
5.5.1.1
emcrsa_archer_egrc
5.5.1.3.1
emcrsa_archer_egrc
5.5.2
emcrsa_archer_egrc
5.5.2.3
emcrsa_archer_egrc
5.5.3.1
𝑥
= Vulnerable software versions