DOCUMENTS Jenkins (CVE-2024-23897)
by n3od4y - 07-08-24, 10:50 AM
#1
As a red teamer, you encountered a Jenkins instance that is vulnerable to CVE-2024-23897, which allowed for limited arbitrary file read. Without credentials and with the /script endpoint inaccessible, you sought to leverage this vulnerability by revealing Hudson to decypt the credentials.

Hidden Content
You must register or login to view this content.
Reply
#2
okansjdsad
Reply
#3
uhmmm is real?
Reply
#4
Lets see
Reply
#5
let me see
Reply
#6
let me see
Reply
#7
thanks
Reply
#8
let me check
Reply
#9
thanks
Reply
#10
thank you
Reply


Forum Jump:


 Users browsing this thread: 2 Guest(s)