Логотип exploitDog
bind:CVE-2019-10309
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-10309

Количество 2

Количество 2

nvd логотип

CVE-2019-10309

почти 7 лет назад

Jenkins Self-Organizing Swarm Plug-in Modules Plugin clients that use UDP broadcasts to discover Jenkins masters do not prevent XML External Entity processing when processing the responses, allowing unauthorized attackers on the same network to read arbitrary files from Swarm clients.

CVSS3: 9.3
EPSS: Низкий
github логотип

GHSA-w898-3ph8-5pgm

больше 3 лет назад

Jenkins Self-Organizing Swarm Plug-in Modules Plugin XXE vulnerability via UDP broadcast response

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2019-10309

Jenkins Self-Organizing Swarm Plug-in Modules Plugin clients that use UDP broadcasts to discover Jenkins masters do not prevent XML External Entity processing when processing the responses, allowing unauthorized attackers on the same network to read arbitrary files from Swarm clients.

CVSS3: 9.3
0%
Низкий
почти 7 лет назад
github логотип
GHSA-w898-3ph8-5pgm

Jenkins Self-Organizing Swarm Plug-in Modules Plugin XXE vulnerability via UDP broadcast response

CVSS3: 6.1
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу