CVE-2023-48641
12.12.2023, 08:15
Archer Platform 6.x before 6.14 P1 HF2 (6.14.0.1.2) contains an insecure direct object reference vulnerability. An authenticated malicious user in a multi-instance installation could potentially exploit this vulnerability by manipulating application resource references in user requests to bypass authorization checks, in order to gain execute access to AWF application resources.Enginsight
Vendor | Product | Version |
---|---|---|
archerirm | archer | 𝑥 < 6.14.0.1.2 |
archerirm | archer | 𝑥 < 6.13.0.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration