CVE-2024-4142: JFrog Artifactory Improper input validation within token creation flow
An Improper input validation vulnerability that could potentially lead to privilege escalation was discovered in JFrog Artifactory.
Due to this vulnerability, users with low privileges may gain administrative access to the system.
This issue can also be exploited in Artifactory platforms with anonymous access enabled.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-4142?
CVE-2024-4142 is classified as a high severity vulnerability due to its potential for privilege escalation.
How do I fix CVE-2024-4142?
To mitigate CVE-2024-4142, users should update JFrog Artifactory to the latest patched version provided by JFrog.
What kind of vulnerability is CVE-2024-4142?
CVE-2024-4142 is an Improper Input Validation vulnerability that may allow unauthorized administrative access.
Who is affected by CVE-2024-4142?
CVE-2024-4142 affects users of JFrog Artifactory, particularly those with low privilege levels.
Can CVE-2024-4142 be exploited remotely?
Yes, CVE-2024-4142 can be exploited remotely, enabling attackers to gain elevated privileges on the system.