RSA Archer GRC Platform prior to 6.2.0.5 is affected by stored cross-site scripting via the Source Asset ID field. An authenticated attacker may potentially exploit this to execute arbitrary HTML in the user's browser session in the context of the affected RSA Archer application.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: dell
Published: 2017-10-11T19:00:00
Updated: 2024-08-05T19:27:40.333Z
Reserved: 2017-09-12T00:00:00
Link: CVE-2017-14370
Vulnrichment
No data.
NVD
Status : Modified
Published: 2017-10-11T19:29:00.253
Modified: 2024-11-21T03:12:39.213
Link: CVE-2017-14370
Redhat
No data.