Skip to content

PRP: Jenkins CVE-2024-23904 Arbitrary File Read #797

@rootvector2

Description

@rootvector2
  • Identifier of the vulnerability: CVE-2024-23904
  • Affected software: Jenkins Log Command Plugin
  • Type of vulnerability: Arbitrary File Read (Unauthenticated)
  • Requires authentication: No
  • Language you would use for writing the plugin: Java (Templated plugin structure used in existing Tsunami HTTP-based detectors)

Resources:

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions