### [CVE-2019-17444](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-17444) ![](https://img.shields.io/static/v1?label=Product&message=Artifactory&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=!%207.x%20&color=brighgreen) ![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-521%3A%20Weak%20Password%20Requirements&color=brighgreen) ### Description Jfrog Artifactory uses default passwords (such as "password") for administrative accounts and does not require users to change them. This may allow unauthorized network-based attackers to completely compromise of Jfrog Artifactory. This issue affects Jfrog Artifactory versions prior to 6.17.0. ### POC #### Reference No PoCs from references. #### Github - https://github.com/ARPSyndicate/kenzer-templates