Artifactory Vulnerabilities Under Active Exploitation Enable Authentication Bypass and Admin Access

Three Artifactory vulnerabilities under active exploitation enable authentication bypassing on Internet-accessible, self-hosted Artifactory deployments, potentially allowing attackers to establish persistent administrator access in under five minutes. The exploits can then enable dangerous post-authentication activity, including credential and key theft, arbitrary code execution, persistence, and anti-forensics measures.

Source: InfoQ

 


Date:

Categorie(s):