Story thread · 2 reports / 2 sources

Artifactory Vulnerabilities Under Active Exploitation Enable Authentication Bypass and Admin Access

infoq.com · 15h · first report

Three Artifactory vulnerabilities under active exploitation enable authentication bypassing on Internet-accessible, self-hosted deployments, potentially allowing attackers to establish persistent administrator access in under five minutes. The exploits then enable dangerous activity, including credential and key theft, arbitrary code execution, persistence, and anti-forensics measures. By Sergio De Simone

The coverage

  1. WatchGuard AP: Command Injection Vulnerabilities and Bypassable Authentication

    heise.de · 3h

The conversation · 0

Sign in to join the conversation.

No comments yet — start the thread.