cve/2017/CVE-2017-17383.md
2024-05-26 14:27:05 +02:00

692 B

CVE-2017-17383

Description

Jenkins through 2.93 allows remote authenticated administrators to conduct XSS attacks via a crafted tool name in a job configuration form, as demonstrated by the JDK tool in Jenkins core and the Ant tool in the Ant plugin, aka SECURITY-624.

POC

Reference

No PoCs from references.

Github