Vulnerability index

Browse CVEs

78 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Authentication Agent For Windows CRITICAL 9.8
CVE-2024-47856

In RSA Authentication Agent before 7.4.7, service paths and shortcut paths may be vulnerable to path interception if the path has one or more spaces …

Fix: 7.4.7+
Fix from $2,300 2025-11-24
Netwitness MEDIUM 6.7
CVE-2022-47529

Insecure Win32 memory objects in Endpoint Windows Agents in RSA NetWitness Platform before 12.2 allow local and admin Windows user accounts to modify…

Fix: 12.2+
Fix from $1,600 2023-03-28
Archer MEDIUM 6.5
CVE-2022-37316

Archer Platform 6.8 before 6.11 P3 (6.11.0.3) contains an improper API access control vulnerability in a multi-instance system that could potentially…

Fix: 6.10.0.3.1 / 6.11.0.3+
Fix from $1,600 2022-08-25
Archer MEDIUM 6.1
CVE-2022-37318

Archer Platform 6.9 SP2 P2 before 6.11 P3 (6.11.0.3) contain a reflected XSS vulnerability. A remote unauthenticated malicious Archer user could pote…

Fix: 6.10.0.4 / 6.11.0.2.4+
Fix from $1,600 2022-08-25
Archer MEDIUM 5.4
CVE-2022-37317

Archer Platform 6.x before 6.11 P3 contain an HTML injection vulnerability. An authenticated remote attacker could potentially exploit this vulnerabi…

Fix: 6.10.0.4 / 6.11.0.2.4+
Fix from $1,600 2022-08-25
Archer HIGH 7.5
CVE-2021-33615

RSA Archer 6.8.00500.1003 P5 allows Unrestricted Upload of a File with a Dangerous Type.

Fix: 6.9.3.4 / 6.10.0.2+
Fix from $1,950 2022-06-02
Archer HIGH 8.8
CVE-2022-30584

Archer Platform 6.3 before 6.11 (6.11.0.0) contains an Improper Access Control Vulnerability within SSO ADFS functionality that could potentially be …

Fix: 6.9.3.4 / 6.10.0.3+
Fix from $1,950 2022-05-26
Archer MEDIUM 6.5
CVE-2022-30585

The REST API in Archer Platform 6.x before 6.11 (6.11.0.0) contains an Authorization Bypass Vulnerability. A remote authenticated malicious user coul…

Fix: 6.9.3.4 / 6.10.0.3+
Fix from $1,600 2022-05-26
Archer MEDIUM 5.4
CVE-2021-33616

RSA Archer 6.x through 6.9 SP1 P4 (6.9.1.4) allows stored XSS.

Fix: after 6.9.1.4
Fix from $1,600 2022-04-04
Archer MEDIUM 6.5
CVE-2021-38362

In RSA Archer 6.x through 6.9 SP3 (6.9.3.0), an authenticated attacker can make a GET request to a REST API endpoint that is vulnerable to an Insecur…

Fix: 6.9.3.0.1+
Fix from $1,600 2022-03-30
Archer HIGH 7.5
CVE-2022-26948

The Archer RSS feed integration for Archer 6.x through 6.9 SP1 (6.9.1.0) is affected by an insecure credential storage vulnerability. A malicious att…

Fix: 6.9.1.1+
Fix from $1,950 2022-03-30
Archer MEDIUM 6.5
CVE-2022-26949

Archer 6.x through 6.9 SP2 P1 (6.9.2.1) contains an improper access control vulnerability on attachments. A remote authenticated malicious user could…

Fix: 6.9.2.2+
Fix from $1,600 2022-03-30
Archer MEDIUM 6.1
CVE-2022-26950

Archer 6.x through 6.9 P2 (6.9.0.2) is affected by an open redirect vulnerability. A remote unprivileged attacker may potentially redirect legitimate…

Fix: 6.9.0.3+
Fix from $1,600 2022-03-30
Archer MEDIUM 6.1
CVE-2022-26951

Archer 6.x through 6.10 (6.10.0.0) contains a reflected XSS vulnerability. A remote SAML-unauthenticated malicious Archer user could potentially expl…

Fix: 6.10.0.1+
Fix from $1,600 2022-03-30
Archer MEDIUM 5.4
CVE-2022-26947

Archer 6.x through 6.9 SP3 (6.9.3.0) contains a reflected XSS vulnerability. A remote authenticated malicious Archer user could potentially exploit t…

Fix: 6.9.3.1+
Fix from $1,600 2022-03-30
Archer MEDIUM 6.5
CVE-2021-41594

In RSA Archer 6.9.SP1 P3, if some application functions are precluded by the Administrator, this can be bypassed by intercepting the API request at t…

Fix: 6.9.3.3+
Fix from $1,600 2022-03-30
Archer MEDIUM 5.5
CVE-2021-29253

The Tableau integration in RSA Archer 6.4 P1 (6.4.0.1) through 6.9 P2 (6.9.0.2) is affected by an insecure credential storage vulnerability. An malic…

Fix: 6.6.0.8 / 6.7.0.8+
Fix from $1,600 2021-05-26
Archer MEDIUM 5.4
CVE-2021-29252

RSA Archer before 6.9 SP1 P1 (6.9.1.1) contains a stored XSS vulnerability. A remote authenticated malicious Archer user with access to modify link n…

Fix: 6.6.0.8 / 6.7.0.8+
Fix from $1,600 2021-05-26
Archer MEDIUM 5.4
CVE-2020-29535

Archer before 6.8 P4 (6.8.0.4) contains a stored XSS vulnerability. A remote authenticated malicious Archer user could potentially exploit this vulne…

Fix: 6.6.0.8 / 6.7.0.8+
Fix from $1,600 2021-01-29
Archer MEDIUM 5.4
CVE-2020-29537

Archer before 6.8 P2 (6.8.0.2) is affected by an open redirect vulnerability. A remote privileged attacker may potentially redirect legitimate users …

Fix: 6.6.0.8 / 6.7.0.8+
Fix from $1,600 2021-01-29
Archer MEDIUM 6.1
CVE-2020-26884

RSA Archer 6.8 through 6.8.0.3 and 6.9 contains a URL injection vulnerability. An unauthenticated remote attacker could potentially exploit this vuln…

Fix: after 6.8.0.3
Fix from $1,600 2020-11-18
Multifactor Authentication Agent HIGH 8.4
CVE-2020-5384

Authentication Bypass Vulnerability RSA MFA Agent 2.0 for Microsoft Windows contains an Authentication Bypass vulnerability. A local unauthenticated …

Mitigation only
Fix from $1,950 2020-07-31
Archer HIGH 8.8
CVE-2020-5335

RSA Archer, versions prior to 6.7 P2 (6.7.0.2), contain a cross-site request forgery vulnerability. A remote unauthenticated attacker could potential…

Fix: 6.7.0.2+
Fix from $1,950 2020-05-04
Archer HIGH 7.2
CVE-2020-5332

RSA Archer, versions prior to 6.7 P3 (6.7.0.3), contain a command injection vulnerability. AN authenticated malicious user with administrator privile…

Fix: 6.7.0.3+
Fix from $1,950 2020-05-04
Archer MEDIUM 6.1
CVE-2020-5334

RSA Archer, versions prior to 6.7 P2 (6.7.0.2), contains a Document Object Model (DOM) based cross-site scripting vulnerability. A remote unauthentic…

Fix: 6.7.0.2+
Fix from $1,600 2020-05-04
Archer MEDIUM 6.1
CVE-2020-5336

RSA Archer, versions prior to 6.7 P1 (6.7.0.1), contain a URL injection vulnerability. An unauthenticated attacker could potentially exploit this vul…

Fix: 6.7.0.1+
Fix from $1,600 2020-05-04
Archer MEDIUM 6.1
CVE-2020-5337

RSA Archer, versions prior to 6.7 P1 (6.7.0.1), contain a URL redirection vulnerability. A remote unauthenticated attacker could potentially exploit …

Fix: 6.7.0.1+
Fix from $1,600 2020-05-04
Archer MEDIUM 5.5
CVE-2020-5331

RSA Archer, versions prior to 6.7 P3 (6.7.0.3), contain an information exposure vulnerability. Users’ session information could potentially be stored…

Fix: 6.7.0.3+
Fix from $1,600 2020-05-04
Archer CRITICAL 9.8
CVE-2019-3758

RSA Archer, versions prior to 6.6 P2 (6.6.0.2), contain an improper authentication vulnerability. The vulnerability allows sysadmins to create user a…

Fix: 6.6.0.2+
Fix from $2,300 2019-09-18
Archer MEDIUM 6.5
CVE-2019-3756

RSA Archer, versions prior to 6.6 P3 (6.6.0.3), contain an information disclosure vulnerability. Information relating to the backend database gets di…

Fix: 6.6.0.3+
Fix from $1,600 2019-09-18