
Detailed disclosure of CVE-2025-27893: an authenticated web parameter manipulation vulnerability in Archer Platform 6.x allowing unauthorized modification of immutable record fields, with reproduction steps and mitigation guidance.
In Archer Platform 6 through 6.14.00202.10024, an authenticated user with record creation privileges can manipulate immutable fields, such as the creation date, by intercepting and modifying a Copy request via a GenericContent/Record.aspx?id= URI. This enables unauthorized modification of system-generated metadata, compromising data integrity and potentially impacting auditing, compliance, and security controls.
POST /RSAarcher/GenericContent/Record.aspx?id=RECORD_ID&moduleId=NUM&levelSelection=NUM&RecordSet=True&Mode=Edit&pr=VALUE&rr=VALUE
Disclaimer: This information is for educational purposes only. The discoverer and publisher are not responsible for misuse of the disclosed vulnerability.