CVE-2020-5336: Rsa Archer

Medium severity, CVSS 6.1. EPSS: 0.7% chance of exploitation in the next 30 days.

RSA Archer, versions prior to 6.7 P1 (6.7.0.1), contain a URL injection vulnerability. An unauthenticated attacker could potentially exploit this vulnerability by tricking a victim application user to execute malicious JavaScript code on the affected system.

Affected products

  • Rsa Archer: before 6.7.0.1 (fixed in 6.7.0.1)

Published 2020-05-04. Last modified 2026-06-17.