JFrog Artifactory before 7.25.4 (Enterprise+ deployments only), is vulnerable to Blind SQL Injection by a low privileged authenticated user due to incomplete validation when performing an SQL query.
Metrics
Affected Vendors & Products
References
History
Mon, 18 Nov 2024 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: JFROG
Published: 2021-12-20T00:00:00
Updated: 2024-11-18T19:58:54.966Z
Reserved: 2021-10-05T00:00:00
Link: CVE-2021-3860
Vulnrichment
Updated: 2024-08-03T17:09:09.552Z
NVD
Status : Modified
Published: 2021-12-20T22:15:07.707
Modified: 2024-11-21T06:22:40.587
Link: CVE-2021-3860
Redhat
No data.