CVE-2022-26949
EUVD-2022-3149330.03.2022, 00:15
Archer 6.x through 6.9 SP2 P1 (6.9.2.1) contains an improper access control vulnerability on attachments. A remote authenticated malicious user could potentially exploit this vulnerability to gain access to files that should only be allowed by extra privileges.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| rsa | archer | 6.1.0.0 ≤ 𝑥 < 6.9.2.2 |
𝑥
= Vulnerable software versions
References