CVE-2023-48193
Insecure Permissions vulnerability in JumpServer GPLv3 v.3.8.0 allows a remote attacker to execute arbitrary code via bypassing the command filtering function.
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (1.98%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
Insecure Permissions vulnerability in JumpServer GPLv3 v.3.8.0 allows a remote attacker to execute arbitrary code via bypassing the command filtering function. NOTE: this is disputed because command filtering is not intended to restrict what code can be run by authorized users who are allowed to execute files.
- CVSS 3.1
- 9.8 CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 1.98% probability · 79th percentile
- CISA KEV
- Not listed
- Affected
- fit2cloud/jumpserver
- Source
- cve@mitre.org
References
- https://blog.fit2cloud.com/?p=8cf83cd9-c23b-4625-9350-38926fb7f88e
- https://github.com/296430468/lcc_test/blob/main/jumpserver_BUG.mdExploit, Third Party Advisory
- https://github.com/jumpserver/jumpserverProduct
- https://github.com/jumpserver/jumpserver/issues/13394
- https://blog.fit2cloud.com/?p=8cf83cd9-c23b-4625-9350-38926fb7f88e
- https://github.com/296430468/lcc_test/blob/main/jumpserver_BUG.mdExploit, Third Party Advisory
- https://github.com/jumpserver/jumpserverProduct
- https://github.com/jumpserver/jumpserver/issues/13394
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.