CVE-2019-10322: Medium severity jfrog artifactory vulnerability
A missing permission check in Jenkins Artifactory Plugin 3.2.2 and earlier in ArtifactoryBuilder.DescriptorImpl#doTestConnection allowed users with Overall/Read access to connect to an attacker-specified URL using attacker-specified credentials IDs obtained through another method, capturing credentials stored in Jenkins.
Other sources
Jenkins Artifactory Plugin does not perform permission checks on a method implementing form validation. This allows users with Overall/Read access to Jenkins to connect to an attacker-specified URL using attacker-specified credentials IDs obtained through another method, capturing credentials stored in Jenkins.
Additionally, this form validation method does not require POST requests, resulting in a cross-site request forgery vulnerability.
As of publication of this advisory, no release containing a fix is available.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this Jenkins Artifactory Plugin vulnerability?
The vulnerability ID for this Jenkins Artifactory Plugin vulnerability is CVE-2019-10322.
What is the severity of CVE-2019-10322?
The severity of CVE-2019-10322 is medium.
What is the affected software for CVE-2019-10322?
The affected software for CVE-2019-10322 is Jfrog Artifactory version up to and including 3.2.2.
How can an attacker exploit CVE-2019-10322?
An attacker can exploit CVE-2019-10322 by connecting to an attacker-specified URL using attacker-specified credentials obtained through another method.
Are there any references available for CVE-2019-10322?
Yes, the references for CVE-2019-10322 are: [Openwall](http://www.openwall.com/lists/oss-security/2019/05/31/2), [SecurityFocus](http://www.securityfocus.com/bid/108540), and [Jenkins security advisory](https://jenkins.io/security/advisory/2019-05-31/#SECURITY-1015%20(1)).