VYPR
Low severity2.7NVD Advisory· Published Aug 24, 2018· Updated Jun 17, 2026

CVE-2018-11065

CVE-2018-11065

Description

The WorkPoint component, which is embedded in all RSA Archer, versions 6.1.x, 6.2.x, 6.3.x prior to 6.3.0.7 and 6.4.x prior to 6.4.0.1, contains a SQL injection vulnerability. A malicious user could potentially exploit this vulnerability to execute SQL commands on the back-end database to read certain data. Embedded WorkPoint is upgraded to version 4.10.16, which contains a fix for the vulnerability.

Affected products

3
  • Rsa/Archer2 versions
    cpe:2.3:a:rsa:archer:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:rsa:archer:*:*:*:*:*:*:*:*range: >=6.1.0.0,<6.1.0.3
    • (no CPE)range: 6.1.x, 6.2.x, 6.3.x < 6.3.0.7, 6.4.x < 6.4.0.1
  • Range: 6.1.x,6.2.x

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.