Jenkins Scriptler Plugin... CVE-2023-50764

- AV AC AU C I A
发布: 2023-12-13
修订: 2023-12-18

Jenkins Scriptler Plugin 342.v6a_89fd40f466 and earlier does not restrict a file name query parameter in an HTTP endpoint, allowing attackers with Scriptler/Configure permission to delete arbitrary files on the Jenkins controller file system.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息