VYPR
High severity7.6NVD Advisory· Published Aug 25, 2022· Updated Jun 17, 2026

CVE-2022-37317

CVE-2022-37317

Description

Archer Platform 6.x before 6.11 P3 contain an HTML injection vulnerability. An authenticated remote attacker could potentially exploit this vulnerability by tricking a victim application user to execute malicious code in the context of the web application. 6.10 P4 (6.10.0.4) and 6.11 P2 HF4 (6.11.0.2.4) are also fixed releases.

Affected products

3
  • cpe:2.3:a:rsa:archer:*:*:*:*:*:*:*:*
    Range: >=6.0,<6.10.0.4
  • Archer/Archer Platformcpe-rescue2 versions
    (expand)+ 1 more
    • (no CPE)
    • (no CPE)range: <6.11 P3

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.