PT-2019-9951 · Jfrog · Jfrog Artifactory Pro

Timo Lindfors

·

Published

2019-04-16

·

Updated

2020-08-24

·

CVE-2018-19971

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions JFrog Artifactory Pro version 6.5.9
Description The issue is related to Incorrect Access Control in JFrog Artifactory Pro. No further details are provided about the nature of this issue, the estimated number of potentially affected devices, or any real-world incidents where this issue was exploited.
Recommendations For JFrog Artifactory Pro version 6.5.9, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Insufficient Verification of Data Authenticity

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-19971

Affected Products

Jfrog Artifactory Pro