Логотип exploitDog
bind:CVE-2023-46655
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-46655

Количество 2

Количество 2

nvd логотип

CVE-2023-46655

больше 2 лет назад

Jenkins CloudBees CD Plugin 1.1.32 and earlier follows symbolic links to locations outside of the directory from which artifacts are published during the 'CloudBees CD - Publish Artifact' post-build step, allowing attackers able to configure jobs to publish arbitrary files from the Jenkins controller file system to the previously configured CloudBees CD server.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-9ggw-h9mf-4jh7

больше 2 лет назад

Jenkins CloudBees CD Plugin vulnerable to arbitrary file read

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-46655

Jenkins CloudBees CD Plugin 1.1.32 and earlier follows symbolic links to locations outside of the directory from which artifacts are published during the 'CloudBees CD - Publish Artifact' post-build step, allowing attackers able to configure jobs to publish arbitrary files from the Jenkins controller file system to the previously configured CloudBees CD server.

CVSS3: 6.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-9ggw-h9mf-4jh7

Jenkins CloudBees CD Plugin vulnerable to arbitrary file read

CVSS3: 6.5
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу