CVE-2019-3715: Rsa Archer Grc Platform
Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.
RSA Archer versions, prior to 6.5 SP1, contain an information exposure vulnerability. Users' session information is logged in plain text in the RSA Archer log files. An authenticated malicious local user with access to the log files may obtain the exposed information to use it in further attacks.
Affected products
- Rsa Archer Grc Platform: before 6.5 (fixed in 6.5); version 6.5 only
Published 2019-03-13. Last modified 2026-06-17.