Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2018-1000861

A code execution vulnerability exists in the Stapler web framework used by Jenkins 2.153 and earlier, LTS 2.138.3 and earlier in stapler/core/src/main/java/org/kohsuke/stapler/MetaClass.java that allows attackers to invoke some methods on Java objects by accessing crafted URLs that were not intended to be invoked this way.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.945
EPSS Ranking 100.0%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 10.0
Proposed Action
A code execution vulnerability exists in the Stapler web framework used by Jenkins
Ransomware Campaign
Unknown
Products affected by CVE-2018-1000861


Contact Us

Shodan ® - All rights reserved