Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2016-0792
Description:Multiple unspecified API endpoints in Jenkins before 1.650 and LTS before 1.642.2 allow remote authenticated users to execute arbitrary code via serialized data in an XML file, related to XStream and groovy.util.Expando.
Test IDs: 1.3.6.1.4.1.25623.1.0.107230   1.3.6.1.4.1.25623.1.0.131290  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2016-0792
https://www.exploit-db.com/exploits/42394/
https://www.exploit-db.com/exploits/43375/
https://www.contrastsecurity.com/security-influencers/serialization-must-die-act-2-xstream
RedHat Security Advisories: RHSA-2016:0711
https://access.redhat.com/errata/RHSA-2016:0711
RedHat Security Advisories: RHSA-2016:1773
http://rhn.redhat.com/errata/RHSA-2016-1773.html




© 1998-2025 E-Soft Inc. All rights reserved.