Логотип exploitDog
bind:CVE-2022-34181
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-34181

Количество 2

Количество 2

nvd логотип

CVE-2022-34181

больше 3 лет назад

Jenkins xUnit Plugin 3.0.8 and earlier implements an agent-to-controller message that creates a user-specified directory if it doesn't exist, and parsing files inside it as test results, allowing attackers able to control agent processes to create an arbitrary directory on the Jenkins controller or to obtain test results from existing files in an attacker-specified directory.

CVSS3: 9.1
EPSS: Низкий
github логотип

GHSA-298j-9q4w-6rm4

больше 3 лет назад

Agent-to-controller security bypass in Jenkins xUnit Plugin

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-34181

Jenkins xUnit Plugin 3.0.8 and earlier implements an agent-to-controller message that creates a user-specified directory if it doesn't exist, and parsing files inside it as test results, allowing attackers able to control agent processes to create an arbitrary directory on the Jenkins controller or to obtain test results from existing files in an attacker-specified directory.

CVSS3: 9.1
1%
Низкий
больше 3 лет назад
github логотип
GHSA-298j-9q4w-6rm4

Agent-to-controller security bypass in Jenkins xUnit Plugin

CVSS3: 6.5
1%
Низкий
больше 3 лет назад

Уязвимостей на страницу