Reflected XSS was discovered in a Dashboard Listing Archer Platform UX page in Archer Platform 6.x before version 2024.08. A remote unauthenticated attacker could potentially exploit this by tricking a victim application user into supplying malicious HTML or JavaScript code to the vulnerable web application; the malicious code is then reflected back to the victim and executed by the web browser in the context of the vulnerable web application.
                
            References
                    Configurations
                    History
                    No history.
Information
                Published : 2024-10-22 17:15
Updated : 2024-10-30 19:35
NVD link : CVE-2024-49211
Mitre link : CVE-2024-49211
CVE.ORG link : CVE-2024-49211
JSON object : View
Products Affected
                archerirm
- archer
CWE
                
                    
                        
                        CWE-79
                        
            Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
