Skip to content
KitploitKITPLOIT
ToolsBlog
Log in
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2025-27893 — Detailed disclosure of CVE-2025-27893: an authenticated web parameter manipulation vulnerability in Archer Platform 6.x allowing unauthorized modification of immutable record fields, with reproduction steps and mitigation guidance. | Kitploit
Tools/GitHubGitHub/nastycrow/cve-2025-27893
Vulnerability AnalysisWeb Application ExploitationWeb SecurityPenetration TestingPapers & ResearchLearning & Education
GitHubnastycrow/cve-2025-27893

CVE-2025-27893

Detailed disclosure of CVE-2025-27893: an authenticated web parameter manipulation vulnerability in Archer Platform 6.x allowing unauthorized modification of immutable record fields, with reproduction steps and mitigation guidance.

View Repository
81 year agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2025-27893: External Control of Assumed-Immutable Web Parameter in Archer Platform

Description

In Archer Platform 6 through 6.14.00202.10024, an authenticated user with record creation privileges can manipulate immutable fields, such as the creation date, by intercepting and modifying a Copy request via a GenericContent/Record.aspx?id= URI. This enables unauthorized modification of system-generated metadata, compromising data integrity and potentially impacting auditing, compliance, and security controls.

Affected Products

  • Vendor: ArcherIRM
  • Product: Archer
  • Version: 6.14.00202.10024

Vulnerability Type

  • CWE-472: External Control of Assumed-Immutable Web Parameter

CVSS 3.1 Score

  • Base Score: 1.8
  • Vector: AV:A/AC:H/PR:H/UI:R/S:U/C:N/I:L/A:N

Impact

  • Integrity Violation: Allows unauthorized modification of system-generated metadata.
  • Compliance Risk: May affect audit logs and compliance tracking.

Affected Component

  • Record Integrity: Vulnerability affects the integrity of records in the Archer system.

Attack Vectors

Steps to Reproduce

  1. Prerequisites: Attacker must have an authenticated user account with record creation privileges.
  2. Target Selection: Identify an existing record to manipulate.
  3. Initiating the Exploit:
    • Select the target record and initiate the "Copy" function via the three-dot menu.
    • This triggers the following HTTP request:
      POST /RSAarcher/GenericContent/Record.aspx?id=RECORD_ID&moduleId=NUM&levelSelection=NUM&RecordSet=True&Mode=Edit&pr=VALUE&rr=VALUE
      
  4. Manipulating the Request:
    • Intercept the request using a tool like Burp Suite.
    • Modify immutable fields such as the Creation Date before sending the request.
  5. Finalizing the Exploit:
    • Submit the modified request.
    • Instead of completing the "Copy" process, cancel the operation to finalize unauthorized modifications.

Discoverer

  • Name: Hattan Hassan D Althobaiti

References

  • CWE-472
  • ArcherIRM Official Website

Mitigation

  • Vendor Action: ArcherIRM should enforce proper validation to prevent modification of system-generated metadata.
  • Workarounds: Restrict access to the "Copy" function for non-administrative users.

Disclaimer: This information is for educational purposes only. The discoverer and publisher are not responsible for misuse of the disclosed vulnerability.

Download Tool