First published: Tue Oct 22 2024(Updated: )
Archer Platform 2024.03 before version 2024.09 is affected by an API authorization bypass vulnerability related to supporting application files. A remote unprivileged attacker could potentially exploit this vulnerability to elevate their privileges and upload additional system icons.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
RSA Archer | >=2024.03<2024.09 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-49209 is classified as a high-severity vulnerability due to the potential for privilege escalation.
To fix CVE-2024-49209, upgrade your Archer Platform to version 2024.09 or later.
CVE-2024-49209 affects users running Archer Platform version 2024.03 prior to 2024.09.
An attacker exploiting CVE-2024-49209 could potentially elevate their privileges and upload unauthorized system icons.
CVE-2024-49209 poses a potential risk from remote unprivileged attackers trying to exploit the vulnerability.