A path traversal vulnerability exists in Jenkins HTML Publisher Plugin 1.15 and older in HtmlPublisherTarget.java that allows attackers able to configure the HTML Publisher build step to override arbitrary files on the Jenkins master.
References
Link | Resource |
---|---|
https://jenkins.io/security/advisory/2018-04-16/ | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2022-10-03T16:22:00
Updated: 2022-10-03T16:22:00
Reserved: 2018-04-16T00:00:00
Link: CVE-2018-1000175
JSON object: View
NVD Information
Status : Analyzed
Published: 2018-05-08T15:29:00.347
Modified: 2018-06-13T15:02:49.180
Link: CVE-2018-1000175
JSON object: View
Redhat Information
No data.
CWE