Vulnerabilities > CVE-2021-46270 - Unspecified vulnerability in Jfrog Artifactory

047910
CVSS 2.7 - LOW
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
HIGH
Confidentiality impact
LOW
Integrity impact
NONE
Availability impact
NONE
network
low complexity
jfrog

Summary

JFrog Artifactory before 7.31.10, is vulnerable to Broken Access Control where a project admin user is able to list all available repository names due to insufficient permission validation.

Vulnerable Configurations

Part Description Count
Application
Jfrog
96