Количество 5
Количество 5
CVE-2019-1003024
A sandbox bypass vulnerability exists in Jenkins Script Security Plugin 1.52 and earlier in RejectASTTransformsCustomizer.java that allows attackers with Overall/Read permission to provide a Groovy script to an HTTP endpoint that can result in arbitrary code execution on the Jenkins master JVM.
CVE-2019-1003024
A sandbox bypass vulnerability exists in Jenkins Script Security Plugin 1.52 and earlier in RejectASTTransformsCustomizer.java that allows attackers with Overall/Read permission to provide a Groovy script to an HTTP endpoint that can result in arbitrary code execution on the Jenkins master JVM.
CVE-2019-1003024
A sandbox bypass vulnerability exists in Jenkins Script Security Plugi ...
GHSA-jgpm-2862-q5m8
Jenkins Script Security Plugin sandbox bypass vulnerability
BDU:2019-02069
Уязвимость компонента RejectASTTransformsCustomizer.java плагина Jenkins Script Security, позволяющая нарушителю выполнить произвольный код
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2019-1003024 A sandbox bypass vulnerability exists in Jenkins Script Security Plugin 1.52 and earlier in RejectASTTransformsCustomizer.java that allows attackers with Overall/Read permission to provide a Groovy script to an HTTP endpoint that can result in arbitrary code execution on the Jenkins master JVM. | CVSS3: 8.8 | 0% Низкий | почти 7 лет назад | |
CVE-2019-1003024 A sandbox bypass vulnerability exists in Jenkins Script Security Plugin 1.52 and earlier in RejectASTTransformsCustomizer.java that allows attackers with Overall/Read permission to provide a Groovy script to an HTTP endpoint that can result in arbitrary code execution on the Jenkins master JVM. | CVSS3: 8.8 | 0% Низкий | почти 7 лет назад | |
CVE-2019-1003024 A sandbox bypass vulnerability exists in Jenkins Script Security Plugi ... | CVSS3: 8.8 | 0% Низкий | почти 7 лет назад | |
GHSA-jgpm-2862-q5m8 Jenkins Script Security Plugin sandbox bypass vulnerability | CVSS3: 8.8 | 0% Низкий | больше 3 лет назад | |
BDU:2019-02069 Уязвимость компонента RejectASTTransformsCustomizer.java плагина Jenkins Script Security, позволяющая нарушителю выполнить произвольный код | CVSS3: 8.8 | 0% Низкий | почти 7 лет назад |
Уязвимостей на страницу