CVE-2020-29538: Rsa Archer
Medium severity, CVSS 4.9. EPSS: 1% chance of exploitation in the next 30 days.
Archer before 6.9 P1 (6.9.0.1) contains an improper access control vulnerability in an API. A remote authenticated malicious administrative user can potentially exploit this vulnerability to gather information about the system, and may use this information in subsequent attacks.
Affected products
- Rsa Archer: from 6.6, before 6.6.0.8 (fixed in 6.6.0.8); from 6.7, before 6.7.0.8 (fixed in 6.7.0.8); from 6.8, before 6.8.0.5 (fixed in 6.8.0.5); from 6.9, before 6.9.0.1 (fixed in 6.9.0.1)
Published 2021-01-29. Last modified 2026-06-17.