Security Advisory

CVE-2023-48641

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-12-12 00:00:00
Last updated 2024-10-09 13:31:27
Assigner mitre
State PUBLISHED

Description

Archer Platform 6.x before 6.14 P1 HF2 (6.14.0.1.2) contains an insecure direct object reference vulnerability. An authenticated malicious user in a multi-instance installation could potentially exploit this vulnerability by manipulating application resource references in user requests to bypass authorization checks, in order to gain execute access to AWF application resources.