Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Jenkins xUnit Plugin 3.0.8 and earlier implements an agent-to-controller message that creates a user-specified directory if it doesn't exist, and parsing files inside it as test results, allowing attackers able to control agent processes to create an arbitrary directory on the Jenkins controller or to obtain test results from existing files in an attacker-specified directory.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Jenkins Plugin xUnit 安全漏洞
Vulnerability Description
Jenkins是Jenkins开源的一个应用软件。一个开源自动化服务器Jenkins提供了数百个插件来支持构建,部署和自动化任何项目。 Jenkins Plugin xUnit 3.0.8及之前版本存在安全漏洞,攻击者利用该漏洞能够控制代理进程在 Jenkins 控制器上创建任意目录或从攻击者指定目录中的现有文件中获取测试结果。
CVSS Information
N/A
Vulnerability Type
N/A