Impact
A user who can obtain a valid SAML response can, under specific conditions, authenticate as a different Artifactory user. This flaw arises from improper verification of the SAML signature, allowing the attacker to forge or replay assertions that reference another account. The resulting privilege escalation enables the attacker to access artifacts, modify configurations, or carry out other privileged actions without authorization.
Affected Systems
The vulnerability affects JFrog Artifactory installations that rely on SAML for authentication. No specific product version is listed, so any deployment of Artifactory that accepts SAML assertions is potentially impacted until a patch is applied.
Risk and Exploitability
The CVSS score of 7.5 indicates a high severity flaw. EPSS data is unavailable, and the vulnerability is not currently catalogued in the CISA KEV list. The likely attack vector is an attacker in possession of a valid SAML response, perhaps through social engineering or an existing compromised identity provider, who can then impersonate another user. The exploit requires no additional privileges beyond those that allow the attacker to acquire the response, making the vulnerability particularly dangerous in multi-tenant or shared environments.
OpenCVE Enrichment