Sploitus

Exploit for Path Traversal in Jenkins

githubexploit · 2024-02-04

Exploit Code

README27 lines
## https://sploitus.com/exploit?id=F9AA112A-EDD8-52D7-A7C0-01B4E2FF1DB4
# CVE-2024-23897 
> Nuclei Template For Exploit CVE-2024-23897 

This template serves as a crucial warning to all users if the CVE-2024-23897 local file vulnerability is detected within your system, it is imperative to take. immediate action and patch your systems without delay. This vulnerability poses a significant risk to the security and integrity of your system, potentially allowing unauthorized access to sensitive files and data

The templates main purpose is to check if the Jenkins version is exploitable. 

Usage:
```
nuclei -t cve-2024-23897.yaml -u http://127.0.0.1:8080 
```

![image](https://github.com/kaanatmacaa/CVE-2024-23897/assets/57772940/9e9a5777-6a67-461c-b3a4-b779ffb48b1c)


Installation: 
```
git clone https://github.com/kaanatmacaa/CVE-2024-23897.git
sudo mv /CVE-2024-23897/cve-2024-23897.yaml /root/nuclei-templates
```


Note: 
Create issue for new ideas 

> Reference: https://nvd.nist.gov/vuln/detail/CVE-2024-23879