Three Artifactory vulnerabilities under active exploitation enable authentication bypassing on Internet-accessible, self-hosted Artifactory deployments, potentially allowing attackers to establish persistent administrator access in under five minutes. The exploits can then enable dangerous post-authentication activity, including credential and key theft, arbitrary code execution, persistence, and anti-forensics measures.
Source: InfoQ
