Important Update: Archer Community Scheduled Maintenance on November 23–24 - New Community Launching Soon! Learn More..

cancel
Showing results for 
Search instead for 
Did you mean: 
Platform Announcements
Review announcements about Archer product releases

Articles

Announcing Archer Platform Release 2024.09

Summary Archer Feature Release 2024.09 delivers enhancements for the Archer Platform. For a detailed list of features within this release, please see the Release Notes link below. Archer Release 2024.09 includes updated use cases. Information on the ...

MegONeil by Archer Employee
  • 3648 Views
  • 0 comments
  • 0 kudos

Announcing Archer Platform Update Release 2024.08

Summary Archer Platform Update Release 2024.08 delivers bug fixes for the Archer Platform. For a detailed list of fixes within this release, please see the Release Notes link below. Note: This release is only available for Archer on-premises clients....

MegONeil by Archer Employee
  • 3696 Views
  • 0 comments
  • 1 kudos

Announcing Archer Platform Update Release 2024.06.02

Summary Archer Platform Update Release 2024.06.02 delivers performance fixes for the Archer Platform. Important SaaS Clients:This release is first being deployed to the US and EU SaaS environments as outlined in the SaaS Announcement. Please note the...

MegONeil by Archer Employee
  • 1720 Views
  • 0 comments
  • 0 kudos

Archer Update for Multiple Vulnerabilities

Archer Identifier SA-15 CVE Identifier CVE-2024-41706, CVE-2024-41707, CVE-2024-41705 Severity High Severity Rating Individual CVE scores noted below. Affected Products Archer Platform versions greater than 6 Summary Archer Platform contains fixes fo...

MegONeil by Archer Employee
  • 6276 Views
  • 0 comments
  • 0 kudos

Announcing Archer Platform Release 2024.06

Summary Archer Release 2024.06 delivers enhancements for the Archer Platform. For a detailed list of features within this release, please see the Release Notes link below. Release Updates This release is available to SaaS clients in the Archer SaaS N...

MegONeil by Archer Employee
  • 10534 Views
  • 0 comments
  • 0 kudos

Announcing Archer Platform Hotfix to 2024.06

Summary Archer Platform Hotfix to 2024.06 delivers bug fixes for the Archer Platform. For a detailed list of fixes within this release, please see the Release Notes link below. Release Updates Important – SaaS Customers Only: Please see the published...

MegONeil by Archer Employee
  • 5040 Views
  • 0 comments
  • 0 kudos
Summary Archer Feature Release 2024.09 delivers enhancements for the Archer Platform. For a detailed list of features within this release, please see the Release Notes link below. Archer Release 2024.09 includes updated use cases. Information on the updates can be found in the Release notes and the Solutions section of the Help Center.  This release is available to SaaS clients in the Archer SaaS Non-Production area on September 16, 2024, and the Archer SaaS Production area on September 30, 2024. This release is available to Archer on-premises clients on October 10, 2024.   Release Notes • Archer Announces Availability of Archer Release 2024.09   Download Archer Platform downloads are available on the myArcher Customer Portal. Please review Instructions to access Archer Platform Downloads through the myArcher Customer Portal to learn how to register and access the download. This release will be available for download on myArcher on October 10, 2024.   Documentation Archer 2024.09 Platform Help Archer 2024.09 Control Panel Help Archer On-Premises Planning and Installation Archer APIs Archer Qualified and Supported Environments Archer 2024.09 & Later Known Issues (PDF format) Archer 2024.09 & Later Known Issues (Excel format) Presentation – Archer Release 2024.09 Overview   Blogs Time for a Change: Content Changes due to TinyMCE Upgrade Maximum Limit on Calculated Cross-References Altered Behavior for File:// External Links Changes to Archer Platform Releases   Free Friday Tech Huddles Free Friday Tech Huddles provide free training that is offered by the Product Management and Support teams. Stay tuned for FFTH updates. Register here to attend future sessions.   End of Product Support Policy Archer has a defined End of Primary Support policy associated with all major versions. For additional details, refer to the Product Version Life Cycle.  
View full article
  Summary Archer Platform Update Release 2024.06.03 delivers targeted improvement bug fixes and performance fixes for the Archer Platform. Important for SaaS Clients: This update release is being deployed to the SaaS environments as outlined in the SaaS Announcement. Please note the version in the About Archer popup window will remain 2024.06. The build version in the copy function will be different.   Release Notes This release contains the following fixes: Navigation menu optimizations   Component Issue Description Application Builder CE-121506 Tab sets on record page are default collapsed IIS CE-121518 IIS Web Server Crash due to deeply nested Values List   Download Archer Platform downloads are available on the myArcher Customer Portal. Please review Instructions to access Archer Platform Downloads through the myArcher Customer Portal to learn how to register and access the download. Note: This release is being made available for SaaS environments first. Any appropriate fixes will be made available to OnPrem clients in a future release.   Documentation Please continue to use all the Release 2024.06 related documents for this release: • Presentation – Archer Release 2024.06 Overview • Archer 2024.06 Platform Help • Archer 2024.06 Control Panel Help • Archer Qualified and Supported Environments • Archer 2024.06 & Later Known Issues (PDF format) • Archer 2024.06 & Later Known Issues (Excel format)   Blogs • Trigger Data Feed from Advanced Workflow • Modernizing Search in SaaS • Changes to Archer Platform Releases • Retiring the Task-Driven Landing Page (TDLP) • Altered Behavior for File:// External Links • Archer Platform and Engage Downloads moving to myArcher   Free Friday Tech Huddles Free Friday Tech Huddles provide free training that is offered by the Product Management and Support teams. Register here to attend future sessions. FFTH: Archer Platform Release June 2024 - Highlights   End of Product Support Policy Archer has a defined End of Primary Support policy associated with all major versions. For additional details, refer to the Product Version Life Cycle.
View full article
  Summary Archer Platform Update Release 2024.08 delivers bug fixes for the Archer Platform. For a detailed list of fixes within this release, please see the Release Notes link below. Note: This release is only available for Archer on-premises clients. Fixes in this release will be included in the 2024.09 release when SaaS upgrades to that release later this year.   Release Notes Archer 2024.08 Release Notes   Download Archer Platform downloads are available on the myArcher Customer Portal. Please review Instructions to access Archer Platform Downloads through the myArcher Customer Portal to learn how to register and access the download. This release is available to Archer on-premises customers on August 8, 2024.   Documentation Archer 2024.08 Platform Help Archer 2024.08 Control Panel Help Archer Qualified and Supported Environments Please continue to use the following Release 2024.06 related documents for this release: • Presentation – Archer Release 2024.06 Overview • Archer 2024.06 & Later Known Issues (PDF format) • Archer 2024.06 & Later Known Issues (Excel format)   Blogs • Trigger Data Feed from Advanced Workflow • Modernizing Search in SaaS • Changes to Archer Platform Releases • Retiring the Task-Driven Landing Page (TDLP) • Altered Behavior for File:// External Links • Archer Platform and Engage Downloads moving to myArcher   Free Friday Tech Huddles Free Friday Tech Huddles provide free training that is offered by the Product Management and Support teams. Register here to attend future sessions. FFTH: Archer Platform Release June 2024 - Highlights   End of Product Support Policy Archer has a defined End of Primary Support policy associated with all major versions. For additional details, refer to the Product Version Life Cycle.
View full article
  Summary Archer Platform Update Release 2024.06.02 delivers performance fixes for the Archer Platform. Important SaaS Clients: This release is first being deployed to the US and EU SaaS environments as outlined in the SaaS Announcement. Please note the version in the About Archer popup window will remain 2024.06. The build version in the copy function will be different.   Release Notes This release contains the following fixes: S3 folder management changes Config Service client interservice optimizations Additional web.config optimizations Additional instrumentation   Download Archer Platform downloads are available on the myArcher Customer Portal. Please review Instructions to access Archer Platform Downloads through the myArcher Customer Portal to learn how to register and access the download. Note: This release is being made available for US and EU SaaS environments first. Rollouts to additional worldwide SaaS environments will be announced at a future point in time. Any appropriate fixes will be made available to OnPrem clients in a future release.   Documentation Please continue to use all the Release 2024.06 related documents for this release: • Presentation – Archer Release 2024.06 Overview • Archer 2024.06 Platform Help • Archer 2024.06 Control Panel Help • Archer Qualified and Supported Environments • Archer 2024.06 & Later Known Issues (PDF format) • Archer 2024.06 & Later Known Issues (Excel format)   Blogs • Trigger Data Feed from Advanced Workflow • Modernizing Search in SaaS • Changes to Archer Platform Releases • Retiring the Task-Driven Landing Page (TDLP) • Altered Behavior for File:// External Links • Archer Platform and Engage Downloads moving to myArcher   Free Friday Tech Huddles Free Friday Tech Huddles provide free training that is offered by the Product Management and Support teams. Register here to attend future sessions. FFTH: Archer Platform Release June 2024 - Highlights End of Product Support Policy Archer has a defined End of Primary Support policy associated with all major versions. For additional details, refer to the Product Version Life Cycle.
View full article
Archer Identifier SA-15   CVE Identifier CVE-2024-41706, CVE-2024-41707, CVE-2024-41705   Severity High   Severity Rating Individual CVE scores noted below.   Affected Products Archer Platform versions greater than 6   Summary Archer Platform contains fixes for multiple security vulnerabilities that could potentially be exploited by malicious users to compromise the affected system.   Details Archer Platform has been updated for the following vulnerabilities: • Stored Cross-site Scripting Vulnerability CVE-2024-41706 A stored XSS was discovered in Archer Platform 6 before version 2024.06. A remote authenticated malicious Archer user could potentially exploit this to store malicious HTML or JavaScript code in a trusted application data store. When victim users access the data store through their browsers, the malicious code gets executed by the web browser in the context of the vulnerable application. 6.14 P4 (6.14.0.4) is also a fixed release. CVSSv3.1 Base Score: 7.3 (AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N) • Stored Cross-site Scripting Vulnerability CVE-2024-41705 A stored XSS was discovered in Archer Platform 6.8 before version 2024.06. There is a stored cross-site scripting vulnerability. A remote authenticated malicious Archer user could potentially exploit this vulnerability to store malicious HTML or JavaScript code in a trusted application data store. When victim users access the data store through their browsers, the malicious code gets executed by the web browser in the context of the vulnerable application. 6.14.P4 (6.14.0.4) and 6.13 P4 (6.13.0.4) are also fixed releases. This vulnerability is similar to, but not identical to, CVE-2023-30639. CVSSv3.1 Base Score: 7.1 (AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N)   • HTML Content Injection Vulnerability CVE-2024-41707 An issue was discovered in Archer Platform 6 before 2024.06. Authenticated users can achieve HTML content injection. A remote authenticated malicious Archer user could potentially exploit this to store malicious HTML code in a trusted application data store. When victim users access the data store through their browsers, the malicious code gets executed by the web browser in the context of the vulnerable application. CVSSv3.1 Base Score: 4.8 (AV:N/AC:H/PR:L/UI:R/S:U/C:H/I:N/A:N) For more information about any of the Common Vulnerabilities and Exposures (CVEs) mentioned here, consult the National Vulnerability Database (NVD) at http://nvd.nist.gov/home.cfm. To search for a particular CVE, use the database’s search utility at http://web.nvd.nist.gov/view/vuln/search.   Recommendation For CVE-2024-41706, the following Archer releases contain a resolution to this vulnerability: • Archer version 2024.06 or higher • Archer version 6.14 P4 (6.14.0.4) or higher For CVE-2024-41705, the following Archer releases contain a resolution to this vulnerability: • Archer version 2024.06 or higher • Archer version 6.14 P4 (6.14.0.4) or higher • Archer version 6.13 P4 (6.13.0.4) or higher For CVE-2024-41707, the following Archer releases contain a resolution to this vulnerability: • Archer version 2024.06 or higher Archer recommends all customers upgrade at the earliest opportunity.   Severity Rating For an explanation of Severity Ratings, refer to the Archer Vulnerability Disclosure Policy. Archer recommends all customers consider both the base score and any relevant temporal and environmental scores which may impact the potential severity associated with particular security vulnerability.   EOPS Policy Archer has a defined End of Primary Support policy associated with all major versions. Please refer to the Product Version Life Cycle for additional details.   Legal Information Read and use the information in this Archer Security Advisory to assist in avoiding any situation that might arise from the problems described herein. If you have any questions regarding this advisory, contact Archer Technical Support. Archer distributes Archer Security Advisories in order to bring to the attention of users of the affected Archer products, important security information. Archer recommends that all users determine the applicability of this information to their individual situations and take appropriate action. The information set forth herein is provided "as is" without warranty of any kind. Archer disclaims all warranties, either express or implied, including the warranties of merchantability, fitness for a particular purpose, title and non-infringement. In no event shall Archer, its affiliates or its suppliers, be liable for any damages whatsoever including direct, indirect, incidental, consequential, loss of business profits or special damages, even if Archer, its affiliates or its suppliers have been advised of the possibility of such damages. Some jurisdictions do not allow the exclusion or limitation of liability for consequential or incidental damages, so the foregoing limitation may not apply.      
View full article
Top Contributors