CVE-2022-30585: Medium severity rsa archer grc platform vulnerability
The REST API in Archer Platform 6.x before 6.11 (6.11.0.0) contains an Authorization Bypass Vulnerability. A remote authenticated malicious user could potentially exploit this vulnerability to view sensitive information. 6.10 P3 (6.10.0.3) and 6.9 SP3 P4 (6.9.3.4) are also fixed releases.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-30585?
CVE-2022-30585 is an Authorization Bypass Vulnerability in the REST API of RSA Archer Platform 6.x before 6.11 (6.11.0.0).
How can this vulnerability be exploited?
A remote authenticated malicious user could exploit this vulnerability to view sensitive information.
Which versions of RSA Archer Platform are affected?
RSA Archer Platform 6.3 to 6.9.3.4 and 6.10.0.0 to 6.10.0.3 are affected.
What is the severity of CVE-2022-30585?
The severity of CVE-2022-30585 is medium, with a CVSS score of 6.5.
Are there any fixed releases available?
Yes, RSA Archer Platform 6.11 (6.11.0.0) and fixed releases 6.10 P3 (6.10.0.3) and 6.9 SP3 P4 (6.9.3.4) are available.