CVE-2017-8025

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
11/10/2017
Last modified:
20/04/2025

Description

RSA Archer GRC Platform prior to 6.2.0.5 is affected by an arbitrary file upload vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability to upload malicious files via attachments to arbitrary paths on the web server.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:emc:archer_grc_platform:*:*:*:*:*:*:*:* 6.2.0.4 (including)