Artifactory Deserialization of Untrusted Data Vulnerability - CVE-2022-0573 - Vulnerability Database

Artifactory Deserialization of Untrusted Data Vulnerability - CVE-2022-0573

High
Reference: CVE-2022-0573
Title: Artifactory Deserialization of Untrusted Data Vulnerability
Overview:

JFrog Artifactory before 7.36.1 and 6.23.41 is vulnerable to Insecure Deserialization of untrusted data which can lead to DoS Privilege Escalation and Remote Code Execution when a specially crafted request is sent by a low privileged authenticated user due to insufficient validation of a user-provided serialized object.