Vulnerability Details CVE-2024-26310
Archer Platform 6.8 before 6.14 P2 (6.14.0.2) contains an improper access control vulnerability. A remote authenticated malicious user could potentially exploit this to gain access to API information that should only be accessible with extra privileges.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 36.9%
CVSS Severity
CVSS v3 Score 4.3
Products affected by CVE-2024-26310
-
cpe:2.3:a:archerirm:archer:-
-
cpe:2.3:a:archerirm:archer:6.10.0.3
-
cpe:2.3:a:archerirm:archer:6.11.0.4
-
cpe:2.3:a:archerirm:archer:6.12.0.0
-
cpe:2.3:a:archerirm:archer:6.12.0.6
-
cpe:2.3:a:archerirm:archer:6.12.0.6.1
-
cpe:2.3:a:archerirm:archer:6.13.0
-
cpe:2.3:a:archerirm:archer:6.13.0.1
-
cpe:2.3:a:archerirm:archer:6.13.0.2
-
cpe:2.3:a:archerirm:archer:6.13.0.2.2
-
cpe:2.3:a:archerirm:archer:6.13.0.3
-
cpe:2.3:a:archerirm:archer:6.13.0.3.1
-
cpe:2.3:a:archerirm:archer:6.13.0.4
-
cpe:2.3:a:archerirm:archer:6.14.0
-
cpe:2.3:a:archerirm:archer:6.14.0.1.2
-
cpe:2.3:a:archerirm:archer:6.3.0.0
-
cpe:2.3:a:archerirm:archer:6.8.0.0
-
cpe:2.3:a:archerirm:archer:6.9.3.4