CVE-2020-5335: Rsa Archer

High severity, CVSS 8.8. EPSS: 0.5% chance of exploitation in the next 30 days.

RSA Archer, versions prior to 6.7 P2 (6.7.0.2), contain a cross-site request forgery vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability by tricking a victim application user to send arbitrary requests to the vulnerable application to perform server operations with the privileges of the authenticated victim user.

Affected products

  • Rsa Archer: before 6.7.0.2 (fixed in 6.7.0.2)

Published 2020-05-04. Last modified 2026-06-17.