Back

MEDIUM

An issue was discovered in Archer Platform 6 before 2024.06

Published Jul 25, 2024

Description

An issue was discovered in Archer Platform 6 before 2024.06. Authenticated users can achieve HTML content injection. A remote authenticated malicious Archer user could potentially exploit this to store malicious HTML code in a trusted application data store. When victim users access the data store through their browsers, the malicious code gets executed by the web browser in the context of the vulnerable application.

Affected products

Remediation

No remediation recorded yet.

References (3)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner mitre
Published Jul 25, 2024
Updated Mar 18, 2025
Reserved Jul 22, 2024

CISA Vulnrichment

Updated Jul 26, 2024

NVD

Status Modified
Modified Jun 17, 2026

Red Hat

No data

ENISA EUVD

Assigner mitre
Published Jul 25, 2024
Updated Mar 18, 2025

GitHub

No data