Логотип exploitDog
bind:CVE-2022-23118
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-23118

Количество 2

Количество 2

nvd логотип

CVE-2022-23118

около 4 лет назад

Jenkins Debian Package Builder Plugin 1.6.11 and earlier implements functionality that allows agents to invoke command-line `git` at an attacker-specified path on the controller, allowing attackers able to control agent processes to invoke arbitrary OS commands on the controller.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-8xjp-rp29-v5j8

около 4 лет назад

Agent-to-controller security bypass in Jenkins Debian Package Builder Plugin

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-23118

Jenkins Debian Package Builder Plugin 1.6.11 and earlier implements functionality that allows agents to invoke command-line `git` at an attacker-specified path on the controller, allowing attackers able to control agent processes to invoke arbitrary OS commands on the controller.

CVSS3: 8.8
1%
Низкий
около 4 лет назад
github логотип
GHSA-8xjp-rp29-v5j8

Agent-to-controller security bypass in Jenkins Debian Package Builder Plugin

CVSS3: 7.5
1%
Низкий
около 4 лет назад

Уязвимостей на страницу