CVE-2021-29253: Medium severity rsa archer grc platform vulnerability
Published May 26, 2021
·Updated
The Tableau integration in RSA Archer 6.4 P1 (6.4.0.1) through 6.9 P2 (6.9.0.2) is affected by an insecure credential storage vulnerability. An malicious attacker with access to the Tableau workbook file may obtain access to credential information to use it in further attacks.
Affected Software
4 affected components
RSA Archer>=6.4<6.6.0.8
RSA Archer>=6.7<6.7.0.8
RSA Archer>=6.8<6.8.0.5
RSA Archer>=6.9<6.9.0.2
Event History
May 26, 2021
CVE Published
via MITRE·03:57 AM
Data Sourced
via MITRE·03:57 AM
DescriptionSeverity
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2021-29253.
2
What software is affected by this vulnerability?
The Tableau integration in RSA Archer versions 6.4 P1 through 6.9 P2 is affected.
3
What is the severity of this vulnerability?
The severity of this vulnerability is medium.
4
How can an attacker exploit this vulnerability?
An attacker with access to the Tableau workbook file can obtain credential information.
5
Are there any fixes or patches available for this vulnerability?
Yes, patches and updates are available for affected RSA Archer versions.