cve/2024/CVE-2024-43044.md
2024-08-12 19:01:27 +00:00

791 B

CVE-2024-43044

Description

Jenkins 2.470 and earlier, LTS 2.452.3 and earlier allows agent processes to read arbitrary files from the Jenkins controller file system by using the ClassLoaderProxy#fetchJar method in the Remoting library.

POC

Reference

No PoCs from references.

Github