Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
RSA Archer, versions prior to 6.4.0.1, contain a stored cross-site scripting vulnerability. A remote authenticated malicious Archer user could potentially exploit this vulnerability to store malicious HTML or JavaScript code in a trusted application data store. When application users access the corrupted data store through their browsers, the malicious code gets executed by the web browser in the context of the vulnerable web application.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Dell EMC RSA Archer 跨站脚本漏洞
Vulnerability Description
Dell EMC RSA Archer是美国戴尔(Dell)公司的一款企业IT治理和合规治理产品。该产品可以制定eGRC计划,用于管理企业风险、实现业务流程自动化等。 Dell EMC RSA Archer 6.4.0.1之前版本中存在跨站脚本漏洞。远程攻击者利用该漏洞在可信的应用程序数据存储库中存储恶意HTML或JavaScript代码并执行这些恶意代码。
CVSS Information
N/A
Vulnerability Type
N/A