CVE-2019-10400 - CERT CVE
ID CVE-2019-10400
Sažetak A sandbox bypass vulnerability in Jenkins Script Security Plugin 1.62 and earlier related to the handling of subexpressions in increment and decrement expressions not involving actual assignment allowed attackers to execute arbitrary code in sandboxed scripts.
Reference
CVSS
Base: 4.9
Impact: 4.9
Exploitability:6.8
Pristup
VektorSloženostAutentikacija
NETWORK MEDIUM SINGLE
Impact
PovjerljivostCjelovitostDostupnost
PARTIAL PARTIAL NONE
CVSS vektor AV:N/AC:M/Au:S/C:P/I:P/A:N
Zadnje važnije ažuriranje 25-10-2023 - 18:16
Objavljeno 12-09-2019 - 14:15