CVE-2023-27898

相關問題 & 資訊整理

CVE-2023-27898

2023年3月10日 — Jenkins 2.270 through 2.393 (both inclusive), LTS 2.277.1 through 2.375.3 (both inclusive) does not escape the Jenkins version a plugin ...,Description. Jenkins 2.270 through 2.393 (both inclusive), LTS 2.277.1 through 2.375.3 (both inclusive) does not escape the Jenkins version a plugin depends ...,2023年3月10日 — CVE-2023-27898 Detail · Description · Severity · References to Advisories, Solutions, and Tools · Weakness Enumeration · Known Affected Software ... ,This issue results in a stored Cross-site scripting (XSS) vulnerability, exploitable by attackers able to provide plugins to the configured update sites and ...,CVE-2023-27898 · Name. CVE-2023-27898 · Description. Jenkins 2.270 through 2.393 (both inclusive), LTS 2.277. · NVD Severity. high · Other trackers. CVE, NVD, CERT, ... ,Jenkins Enterprise and Operations Center 2.346.x < 2.346.40.0.8 多個弱點(CloudBees 2023 年3 月8 日安全公告) · 概要 · 說明 · 解決方案 · 另請參閱 · Plugin 詳細資訊. ,2023年3月10日 — The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that ...,2024年1月17日 — 最近,Jenkins Plugin Manager被发现存在一个存储型XSS漏洞(CVE-2023-27898)。这个漏洞可能会让攻击者利用Jenkins系统的漏洞,向受害者的浏览器注入恶意 ...

相關軟體 Visual Studio Community 資訊

Visual Studio Community
Visual Studio Community 是一個功能齊全,可擴展的免費 IDE,用於為 Android,iOS,Windows 以及 Web 應用程序和雲服務創建現代應用程序。嘗試用於 Windows PC 的 Visual Studio Community,以獲得功能齊全且可擴展的 IDE; Visual Studio Express. A 的全新替代方案全新的基於工作負載的安裝程序優化了... Visual Studio Community 軟體介紹

CVE-2023-27898 相關參考資料
Cross-site Scripting vulnerability in Jenkins · CVE-2023- ...

2023年3月10日 — Jenkins 2.270 through 2.393 (both inclusive), LTS 2.277.1 through 2.375.3 (both inclusive) does not escape the Jenkins version a plugin ...

https://github.com

CVE-2023-27898

Description. Jenkins 2.270 through 2.393 (both inclusive), LTS 2.277.1 through 2.375.3 (both inclusive) does not escape the Jenkins version a plugin depends ...

https://cve.mitre.org

CVE-2023-27898 Detail - NVD

2023年3月10日 — CVE-2023-27898 Detail · Description · Severity · References to Advisories, Solutions, and Tools · Weakness Enumeration · Known Affected Software ...

https://nvd.nist.gov

CVE-2023-27898 Jenkins: XSS vulnerability in plugin ...

This issue results in a stored Cross-site scripting (XSS) vulnerability, exploitable by attackers able to provide plugins to the configured update sites and ...

https://bugzilla.redhat.com

CVE-2023-27898 — Alpine Security Tracker

CVE-2023-27898 · Name. CVE-2023-27898 · Description. Jenkins 2.270 through 2.393 (both inclusive), LTS 2.277. · NVD Severity. high · Other trackers. CVE, NVD, CERT, ...

https://security.alpinelinux.o

Jenkins Enterprise and Operations Center 2.346.x ...

Jenkins Enterprise and Operations Center 2.346.x &lt; 2.346.40.0.8 多個弱點(CloudBees 2023 年3 月8 日安全公告) · 概要 · 說明 · 解決方案 · 另請參閱 · Plugin 詳細資訊.

https://zh-tw.tenable.com

Vulnerability Details : CVE-2023-27898 - Jenkins

2023年3月10日 — The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that ...

https://www.cvedetails.com

防范Jenkins Plugin Manager的存储型XSS漏洞(CVE-2023 ...

2024年1月17日 — 最近,Jenkins Plugin Manager被发现存在一个存储型XSS漏洞(CVE-2023-27898)。这个漏洞可能会让攻击者利用Jenkins系统的漏洞,向受害者的浏览器注入恶意 ...

https://developer.baidu.com