Логотип exploitDog
bind:CVE-2018-1000009
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-1000009

Количество 2

Количество 2

nvd логотип

CVE-2018-1000009

около 8 лет назад

Jenkins Checkstyle Plugin 3.49 and earlier processes XML external entities in files it parses as part of the build process, allowing attackers with user permissions in Jenkins to extract secrets from the Jenkins master, perform server-side request forgery, or denial-of-service attacks.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-jfj9-7j5w-6xgx

больше 3 лет назад

XXE vulnerability in Jenkins Checkstyle Plugin

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-1000009

Jenkins Checkstyle Plugin 3.49 and earlier processes XML external entities in files it parses as part of the build process, allowing attackers with user permissions in Jenkins to extract secrets from the Jenkins master, perform server-side request forgery, or denial-of-service attacks.

CVSS3: 8.8
0%
Низкий
около 8 лет назад
github логотип
GHSA-jfj9-7j5w-6xgx

XXE vulnerability in Jenkins Checkstyle Plugin

CVSS3: 8.8
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу