Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-43282 | Archer Platform 2024.03 before version 2024.09 is affected by an API authorization bypass vulnerability related to supporting application files. A remote unprivileged attacker could potentially exploit this vulnerability to elevate their privileges and upload additional system icons. |
Fri, 25 Oct 2024 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Archerirm
Archerirm archer |
|
| Weaknesses | CWE-863 | |
| CPEs | cpe:2.3:a:archerirm:archer:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Archerirm
Archerirm archer |
Tue, 22 Oct 2024 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 22 Oct 2024 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Archer Platform 2024.03 before version 2024.09 is affected by an API authorization bypass vulnerability related to supporting application files. A remote unprivileged attacker could potentially exploit this vulnerability to elevate their privileges and upload additional system icons. | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-03-14T15:44:36.443Z
Reserved: 2024-10-14T00:00:00.000Z
Link: CVE-2024-49209
Updated: 2024-10-22T17:07:20.634Z
Status : Modified
Published: 2024-10-22T17:15:05.763
Modified: 2025-03-14T16:15:37.070
Link: CVE-2024-49209
No data.
OpenCVE Enrichment
No data.
EUVD