cvedb.io
CVE-2019-3715
HIGH · CVSS 7.8
EPSS exploitation probability: 0%
Published 2019-03-13T21:29:00.400 · Last modified 2026-06-17T02:35:26.220

Summary

RSA Archer versions, prior to 6.5 SP1, contain an information exposure vulnerability. Users' session information is logged in plain text in the RSA Archer log files. An authenticated malicious local user with access to the log files may obtain the exposed information to use it in further attacks.

Affected products

rsa — archer_grc_platform

Does this affect you?

Add your gear to cvedb and we'll alert you only when rsa ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.