CVE-2021-33615: Malicious File Upload
Published Jun 2, 2022
·Updated
RSA Archer 6.8.00500.1003 P5 allows Unrestricted Upload of a File with a Dangerous Type.
Affected Software
2 affected components
RSA Archer>=6.0.0<6.9.3.4
RSA Archer>=6.10.0.0<6.10.0.2
Event History
Jun 2, 2022
CVE Published
via MITRE·12:32 PM
Data Sourced
via MITRE·12:32 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2021-33615?
The severity of CVE-2021-33615 is high with a CVSS score of 7.5.
2
How does CVE-2021-33615 impact RSA Archer?
CVE-2021-33615 allows unrestricted upload of a file with a dangerous type in RSA Archer 6.8.00500.1003 P5.
3
Which versions of RSA Archer are impacted by CVE-2021-33615?
RSA Archer versions 6.0.0 to 6.9.3.4 and versions 6.10.0.0 to 6.10.0.2 are impacted by CVE-2021-33615.
4
How can I fix the vulnerability in RSA Archer?
To fix the vulnerability in RSA Archer, update to a version outside the impacted range (6.9.3.4 and above for versions 6.0.0 to 6.9.3.4, and 6.10.0.3 and above for versions 6.10.0.0 to 6.10.0.2).
5
What is the Common Weakness Enumeration (CWE) ID for CVE-2021-33615?
The Common Weakness Enumeration (CWE) ID for CVE-2021-33615 is CWE-434.