VYPR

Vendor CVEs

Archer

All CVEs

54 total · sorted by risk
  • CVE-2023-45357MedOct 17, 2023
    risk 0.28cvss 4.3epss 0.00

    Archer Platform 6.x before 6.13 P2 HF2 (6.13.0.2.2) contains a sensitive information disclosure vulnerability. An authenticated attacker could potentially obtain access to sensitive information via a popup warning message. 6.14 (6.14.0) is also a fixed release.

  • CVE-2020-29536MedJan 29, 2021
    risk 0.28cvss 4.3epss 0.01

    Archer before 6.8 P2 (6.8.0.2) is affected by a path exposure vulnerability. A remote authenticated malicious attacker with access to service files may obtain sensitive information to use it in further attacks.

  • CVE-2025-27893LowMar 11, 2025
    risk 0.12cvss 1.8epss 0.00

    In Archer Platform 6 through 6.14.00202.10024, an authenticated user with record creation privileges can manipulate immutable fields, such as the creation date, by intercepting and modifying a Copy request via a GenericContent/Record.aspx?id= URI. NOTE: the Supplier analyzed the…

  • CVE-2026-8699HigJul 2, 2026
    risk 0.00cvss epss 0.00

    A stored Cross-Site Scripting (XSS) vulnerability has been identified in the web-based management interface of Archer C5 v6.8 routers, due to insufficient server-side validation and lack of proper output encoding of user-controlled input in a certain field.  An attacker with…

Page 2 of 2