CVE-2017-8025: Input Validation
RSA Archer GRC Platform prior to 6.2.0.5 is affected by an arbitrary file upload vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability to upload malicious files via attachments to arbitrary paths on the web server.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-8025?
CVE-2017-8025 is classified as a high severity vulnerability due to its potential for remote exploitation.
How do I fix CVE-2017-8025?
To mitigate CVE-2017-8025, upgrade the RSA Archer GRC Platform to version 6.2.0.5 or later.
Who is affected by CVE-2017-8025?
CVE-2017-8025 affects all versions of RSA Archer GRC Platform prior to 6.2.0.5.
What type of vulnerability is CVE-2017-8025?
CVE-2017-8025 is an arbitrary file upload vulnerability that allows unauthenticated attackers to upload malicious files.
Can CVE-2017-8025 be exploited remotely?
Yes, CVE-2017-8025 can be exploited remotely by unauthenticated attackers, leading to potential compromise of the web server.