Record summary

CVE-2023-42820 has a selected CVSS score of 7.0 (high); EIP currently links 3 repository PoCs.

Description

JumpServer is an open source bastion host. This vulnerability is due to exposing the random number seed to the API, potentially allowing the randomly generated verification codes to be replayed, which could lead to password resets. If MFA is enabled users are not affect. Users not using local authentication are also not affected. Users are advised to upgrade to either version 2.28.19 or to 3.6.5. There are no known workarounds or this issue.

Description source: CVE List

Exploitation context

Available material

Repository PoCs
3

CISA SSVC decision

ExploitationNone
AutomatableYes
Technical impactPartial

CISA Coordinator · SSVC 2.0.3 · Evaluated Sep 23, 2024 · Source: CVE List

Affected products and versions

1
ProductSourceVersion rangeStatus
CVE List>= 2.24, < 2.28.19affected
>= 3.0.0, < 3.6.5affected

Proofs of concept

3

Repository PoCs

GitHubC1ph3rX13/CVE-2023-42820Repository PoCby C1ph3rX13Stars: 56Not analyzed7 files

281.3 KiB

GitHub

PoC details
GitHubStartr4ck/cve-2023-42820Repository PoCby Startr4ckStars: 2Not analyzed3 files

1.2 MiB

GitHub

PoC details
GitHubtarihub/blackjumpRepository PoCby tarihubStars: 276Not analyzed9 files

259.7 KiB · linked to 3 vulnerabilities

GitHub

PoC details

References

2