Dell EMC RSA Archer是美国戴尔(Dell)公司的一款企业IT治理和合规治理产品。该产品可以制定eGRC计划,用于管理企业风险、实现业务流程自动化等。 Dell EMC RSA Archer 6.7 P2 (6.7.0.2)之前版本中存在跨站请求伪造漏洞。远程攻击者可通过诱使用户向该受影响的应用程序发送任意请求利用该漏洞以用户权限执行服务器端操作。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Dell | RSA Archer | unspecified ~ 6.7 P2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2020-5331 | 8.8 HIGH | Dell EMC RSA Archer 信息泄露漏洞 |
| CVE-2020-5334 | 8.2 HIGH | Dell EMC RSA Archer 跨站脚本漏洞 |
| CVE-2020-5343 | 7.3 HIGH | Dell OS recovery image for Windows 安全漏洞 |
| CVE-2020-5332 | 7.2 HIGH | Dell EMC RSA Archer 操作系统命令注入漏洞 |
| CVE-2020-5336 | 4.6 MEDIUM | Dell EMC RSA Archer 注入漏洞 |
| CVE-2020-5337 | 4.6 MEDIUM | Dell EMC RSA Archer 输入验证错误漏洞 |
| CVE-2020-5333 | Dell EMC RSA Archer 信息泄露漏洞 |
No comments yet