Vulnerability Description
RSA Archer, versions prior to 6.6 P3 (6.6.0.3), contain an information disclosure vulnerability. Information relating to the backend database gets disclosed to low-privileged RSA Archer users' UI under certain error conditions.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Rsa | Archer | < 6.6.0.3 |
Related Weaknesses (CWE)
References
FAQ
What is CVE-2019-3756?
CVE-2019-3756 is a vulnerability with a CVSS score of 6.5 (MEDIUM). RSA Archer, versions prior to 6.6 P3 (6.6.0.3), contain an information disclosure vulnerability. Information relating to the backend database gets disclosed to low-privileged RSA Archer users' UI unde...
How severe is CVE-2019-3756?
CVE-2019-3756 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-3756?
Check the references section above for vendor advisories and patch information. Affected products include: Rsa Archer.