Логотип exploitDog
bind:CVE-2018-1000010
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-1000010

Количество 2

Количество 2

nvd логотип

CVE-2018-1000010

около 8 лет назад

Jenkins DRY Plugin 2.49 and earlier processes XML external entities in files it parses as part of the build process, allowing attackers with user permissions in Jenkins to extract secrets from the Jenkins master, perform server-side request forgery, or denial-of-service attacks.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-x7qf-qh3r-mx22

больше 3 лет назад

XXE vulnerability in Jenkins DRY Plugin

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-1000010

Jenkins DRY Plugin 2.49 and earlier processes XML external entities in files it parses as part of the build process, allowing attackers with user permissions in Jenkins to extract secrets from the Jenkins master, perform server-side request forgery, or denial-of-service attacks.

CVSS3: 8.8
0%
Низкий
около 8 лет назад
github логотип
GHSA-x7qf-qh3r-mx22

XXE vulnerability in Jenkins DRY Plugin

CVSS3: 8.8
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу