CVE

CVE-2016-0792

CVE-2016-0792

Multiple unspecified API endpoints in CloudBees Jenkins before 1.650 and LTS before 1.642.2 allow remote authenticated users to execute arbitrary code via serialized data in an XML file, related to XStream and groovy.util.Expando.

Source: CVE-2016-0792

Exit mobile version