Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 4

Количество 4

redhat логотип

CVE-2023-24422

больше 3 лет назад

A sandbox bypass vulnerability involving map constructors in Jenkins Script Security Plugin 1228.vd93135a_2fb_25 and earlier allows attackers with permission to define and run sandboxed scripts, including Pipelines, to bypass the sandbox protection and execute arbitrary code in the context of the Jenkins controller JVM.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2023-24422

больше 3 лет назад

A sandbox bypass vulnerability involving map constructors in Jenkins Script Security Plugin 1228.vd93135a_2fb_25 and earlier allows attackers with permission to define and run sandboxed scripts, including Pipelines, to bypass the sandbox protection and execute arbitrary code in the context of the Jenkins controller JVM.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-76qj-9gwh-pvv3

больше 3 лет назад

Sandbox bypass in Jenkins Script Security Plugin

CVSS3: 8.8
EPSS: Низкий
fstec логотип

BDU:2023-00487

больше 3 лет назад

Уязвимость плагина Jenkins Script Security Plugin связана с ошибками при обработке данных конструктором карт, позволяющая нарушителю выйти из изолированной программной среды и выполнить произвольный код в контексте JVM контроллера Jenkins

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2023-24422

A sandbox bypass vulnerability involving map constructors in Jenkins Script Security Plugin 1228.vd93135a_2fb_25 and earlier allows attackers with permission to define and run sandboxed scripts, including Pipelines, to bypass the sandbox protection and execute arbitrary code in the context of the Jenkins controller JVM.

CVSS3: 8.8
1%
Низкий
больше 3 лет назад
nvd логотип
CVE-2023-24422

A sandbox bypass vulnerability involving map constructors in Jenkins Script Security Plugin 1228.vd93135a_2fb_25 and earlier allows attackers with permission to define and run sandboxed scripts, including Pipelines, to bypass the sandbox protection and execute arbitrary code in the context of the Jenkins controller JVM.

CVSS3: 8.8
1%
Низкий
больше 3 лет назад
github логотип
GHSA-76qj-9gwh-pvv3

Sandbox bypass in Jenkins Script Security Plugin

CVSS3: 8.8
1%
Низкий
больше 3 лет назад
fstec логотип
BDU:2023-00487

Уязвимость плагина Jenkins Script Security Plugin связана с ошибками при обработке данных конструктором карт, позволяющая нарушителю выйти из изолированной программной среды и выполнить произвольный код в контексте JVM контроллера Jenkins

CVSS3: 8.8
1%
Низкий
больше 3 лет назад

Уязвимостей на страницу