JumpServer Authentication Bypass (CVE-2023-42442)

Related Vulnerabilities: CVE-2023-42442  

Check Point Reference: CPAI-2023-1430 Date Published: 7 Jan 2024 Severity: Medium Last Updated: Sunday 07 January, 2024 Source: Industry Reference:CVE-2023-42442
Protection Provided by:

Security Gateway
R81, R80, R77, R75

Who is Vulnerable? FIT2CLOUD JumpServer 3.0.0 and later, prior to 3.5.5
FIT2CLOUD JumpServer 3.6.0 and later, prior to 3.6.4 Vulnerability Description An authentication bypass vulnerability exists in JumpServer. Successful exploitation of this vulnerability could allow a remote attacker to execute arbitrary code on the affected system.