Vulnerability Details CVE-2022-30950
Jenkins WMI Windows Agents Plugin 1.8 and earlier includes the Windows Remote Command library which has a buffer overflow vulnerability that may allow users able to connect to a named pipe to execute commands on the Windows agent machine.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.012
EPSS Ranking 78.0%
CVSS Severity
CVSS v3 Score 8.8
CVSS v2 Score 6.5
Products affected by CVE-2022-30950
-
cpe:2.3:a:jenkins:wmi_windows_agents:1.0
-
cpe:2.3:a:jenkins:wmi_windows_agents:1.1
-
cpe:2.3:a:jenkins:wmi_windows_agents:1.2
-
cpe:2.3:a:jenkins:wmi_windows_agents:1.3
-
cpe:2.3:a:jenkins:wmi_windows_agents:1.3.1
-
cpe:2.3:a:jenkins:wmi_windows_agents:1.4
-
cpe:2.3:a:jenkins:wmi_windows_agents:1.5
-
cpe:2.3:a:jenkins:wmi_windows_agents:1.6
-
cpe:2.3:a:jenkins:wmi_windows_agents:1.7
-
cpe:2.3:a:jenkins:wmi_windows_agents:1.8