POC for Jenkins CVE-2024-23897 made public

POC for Jenkins CVE-2024-23897 made public


Researchers warn that several proof-of-concept (PoC) exploits targeting the recently disclosed critical Jenkins vulnerability, CVE-2024-23897, have been made public.

A critical flaw, tracked as CVE-2024-23897, could lead to remote code execution (RCE). The vulnerability was reported by the researcher Yaniv Nizry from Sonar, who wrote a detailed analysis of the issue

Advertisements

Researcher German Fernandez, warned of a massive exploitation of the vulnerability, querying Shodan, he found more than 75000 internet-facing instances.

The availability of exploits will cause several threat actors to start exploiting the vulnerability in attacks in the wild.

Comments

No comments yet. Why don’t you start the discussion?

    Leave a Reply

    This site uses Akismet to reduce spam. Learn how your comment data is processed.