Improper Authentication in JumpServer - CVE-2023-43652

 

Improper Authentication in JumpServer - CVE-2023-43652

Published: September 27, 2023 / Updated: April 27, 2026


Vulnerability identifier: #VU128134
CSH Severity: Medium
CVSS v4: 8.3 [CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:L/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2023-43652
CWE-ID: CWE-287
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to gain access to the current user's information and authorized actions.

The vulnerability exists due to improper authentication in the authentication token API for the KoKo component when handling SSH public key login validation requests. A remote attacker can submit a username and a leaked SSH public key to gain access to the current user's information and authorized actions.

The API does not verify the source of requests before generating a personal authentication token.


Affected software

JumpServer

How to mitigate CVE-2023-43652

Install security update from vendor's website.

JumpServer - addressed in versions 2.28.20, 3.7.1

External References

Related Security Bulletins