CVE-2023-42661
HIGH8.8EPSS 1.3%發布日:2024/3/31修改日:2025/4/3
也稱為:BIT-artifactory-2023-42661
描述
JFrog Artifactory prior to version 7.76.2 is vulnerable to Arbitrary File Write of untrusted data, which may lead to DoS or Remote Code Execution when a specially crafted series of requests is sent by an authenticated user. This is due to insufficient validation of artifacts.
受影響套件(1)
- Bitnami/artifactoryfrom 0, < 7.76.2
CVSS 分數
| 來源 | 版本 | 嚴重程度 | 向量 |
|---|---|---|---|
| osv | CVSS 3.1 | HIGH8.8 | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |