Jenkins Continuous Integration with Toad Edge Plugin 2.3 and previous versions allows attackers with Item/Configure permission to read arbitrary files on the Jenkins controller by specifying an input folder on the Jenkins controller as a parameter to its build steps.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
jenkins continuous integration with toad edge |