Количество 2
Количество 2
CVE-2018-1000054
Jenkins CCM Plugin 3.1 and earlier processes XML external entities in files it parses as part of the build process, allowing attackers with user permissions in Jenkins to extract secrets from the Jenkins master, perform server-side request forgery, or denial-of-service attacks.
GHSA-c4mp-h3m2-h5mc
Jenkins CCM Plugin vulnerable to Improper Restriction of XML External Entity Reference
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2018-1000054 Jenkins CCM Plugin 3.1 and earlier processes XML external entities in files it parses as part of the build process, allowing attackers with user permissions in Jenkins to extract secrets from the Jenkins master, perform server-side request forgery, or denial-of-service attacks. | CVSS3: 8.3 | 0% Низкий | почти 8 лет назад | |
GHSA-c4mp-h3m2-h5mc Jenkins CCM Plugin vulnerable to Improper Restriction of XML External Entity Reference | CVSS3: 8.3 | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу