Описание
Archer 6.11.00204.10014 allows attackers to execute arbitrary code via crafted system inputs that would be exported into the CSV and be executed after the user opened the file with compatible applications. NOTE: the Supplier does not accept this as a valid vulnerability report against their product.
EPSS
Процентиль: 16%
0.0005
Низкий
8.8 High
CVSS3
Дефекты
CWE-1236
Связанные уязвимости
CVSS3: 8.8
github
6 месяцев назад
An issue was discovered in Archer Technology RSA Archer 6.11.00204.10014 allowing attackers to execute arbitrary code via crafted system inputs that would be exported into the CSV and be executed after the user opened the file with compatible applications.
EPSS
Процентиль: 16%
0.0005
Низкий
8.8 High
CVSS3
Дефекты
CWE-1236