Логотип exploitDog
bind:CVE-2023-24455
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-24455

Количество 2

Количество 2

nvd логотип

CVE-2023-24455

около 3 лет назад

Jenkins visualexpert Plugin 1.3 and earlier does not restrict the names of files in methods implementing form validation, allowing attackers with Item/Configure permission to check for the existence of an attacker-specified file path on the Jenkins controller file system.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-8mmh-h4jh-2g34

около 3 лет назад

Path Traversal in Jenkins visualexpert Plugin

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-24455

Jenkins visualexpert Plugin 1.3 and earlier does not restrict the names of files in methods implementing form validation, allowing attackers with Item/Configure permission to check for the existence of an attacker-specified file path on the Jenkins controller file system.

CVSS3: 4.3
0%
Низкий
около 3 лет назад
github логотип
GHSA-8mmh-h4jh-2g34

Path Traversal in Jenkins visualexpert Plugin

CVSS3: 4.3
0%
Низкий
около 3 лет назад

Уязвимостей на страницу