Description
jenkins before versions 2.44, 2.32.2 is vulnerable to an improper blacklisting of the Pipeline metadata files in the agent-to-master security subsystem. This could allow metadata files to be written to by malicious agents (SECURITY-358).
Remediation
References
Related Vulnerabilities
Jenkins CVE-2023-27902 Vulnerability (CVE-2023-27902)
phpMyAdmin Other Vulnerability (CVE-2004-2632)
Moodle Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2014-7838)
Rukovoditel Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2020-11815)
WordPress Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2013-4338)