mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-10 03:37:37 +02:00
919 B
919 B
CVE-2021-3860
Description
JFrog Artifactory before 7.25.4 (Enterprise+ deployments only), is vulnerable to Blind SQL Injection by a low privileged authenticated user due to incomplete validation when performing an SQL query.
POC
Reference
- http://packetstormsecurity.com/files/177162/JFrog-Artifactory-SQL-Injection.html
- http://packetstormsecurity.com/files/177162/JFrog-Artifactory-SQL-Injection.html