PoC-in-GitHub/2024/CVE-2024-23897.json

759 lines
26 KiB
JSON
Raw Normal View History

2024-01-24 19:36:33 +01:00
[
{
"id": 747359905,
"name": "SECURITY-3314-3315",
"full_name": "jenkinsci-cert\/SECURITY-3314-3315",
"owner": {
"login": "jenkinsci-cert",
"id": 9285726,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/9285726?v=4",
"html_url": "https:\/\/github.com\/jenkinsci-cert"
},
"html_url": "https:\/\/github.com\/jenkinsci-cert\/SECURITY-3314-3315",
"description": "Workaround for disabling the CLI to mitigate SECURITY-3314\/CVE-2024-23897 and SECURITY-3315\/CVE-2024-23898",
"fork": false,
"created_at": "2024-01-23T19:19:04Z",
2024-03-31 20:26:50 +02:00
"updated_at": "2024-03-31T14:14:47Z",
2024-02-20 19:26:44 +01:00
"pushed_at": "2024-02-20T14:13:25Z",
2024-03-31 20:26:50 +02:00
"stargazers_count": 6,
"watchers_count": 6,
2024-01-24 19:36:33 +01:00
"has_discussions": false,
2024-02-05 13:28:47 +01:00
"forks_count": 1,
2024-01-24 19:36:33 +01:00
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
2024-02-05 13:28:47 +01:00
"forks": 1,
2024-03-31 20:26:50 +02:00
"watchers": 6,
2024-01-24 19:36:33 +01:00
"score": 0,
2024-03-30 07:26:32 +01:00
"subscribers_count": 6
2024-01-25 13:45:05 +01:00
},
2024-01-26 13:39:18 +01:00
{
"id": 748543127,
"name": "CVE-2024-23897",
"full_name": "binganao\/CVE-2024-23897",
"owner": {
"login": "binganao",
"id": 70050083,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/70050083?v=4",
"html_url": "https:\/\/github.com\/binganao"
},
"html_url": "https:\/\/github.com\/binganao\/CVE-2024-23897",
"description": null,
"fork": false,
"created_at": "2024-01-26T08:02:00Z",
2024-04-18 02:30:57 +02:00
"updated_at": "2024-04-17T20:02:40Z",
2024-02-01 13:26:11 +01:00
"pushed_at": "2024-02-01T06:50:32Z",
2024-04-18 02:30:57 +02:00
"stargazers_count": 98,
"watchers_count": 98,
2024-01-26 13:39:18 +01:00
"has_discussions": false,
2024-03-29 01:26:36 +01:00
"forks_count": 10,
2024-01-26 13:39:18 +01:00
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
2024-03-29 01:26:36 +01:00
"forks": 10,
2024-04-18 02:30:57 +02:00
"watchers": 98,
2024-01-26 13:39:18 +01:00
"score": 0,
2024-02-16 07:26:15 +01:00
"subscribers_count": 1
2024-01-26 13:39:18 +01:00
},
{
"id": 748577478,
"name": "CVE-2024-23897",
"full_name": "h4x0r-dz\/CVE-2024-23897",
"owner": {
"login": "h4x0r-dz",
"id": 26070859,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/26070859?v=4",
"html_url": "https:\/\/github.com\/h4x0r-dz"
},
"html_url": "https:\/\/github.com\/h4x0r-dz\/CVE-2024-23897",
"description": "CVE-2024-23897",
"fork": false,
"created_at": "2024-01-26T09:44:32Z",
2024-04-17 14:29:25 +02:00
"updated_at": "2024-04-17T06:32:26Z",
2024-01-28 13:25:40 +01:00
"pushed_at": "2024-01-28T06:47:28Z",
2024-04-17 14:29:25 +02:00
"stargazers_count": 165,
"watchers_count": 165,
2024-01-26 13:39:18 +01:00
"has_discussions": false,
2024-04-03 08:27:02 +02:00
"forks_count": 32,
2024-01-26 13:39:18 +01:00
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
2024-04-03 08:27:02 +02:00
"forks": 32,
2024-04-17 14:29:25 +02:00
"watchers": 165,
2024-01-27 01:25:52 +01:00
"score": 0,
2024-02-16 07:26:15 +01:00
"subscribers_count": 2
2024-01-27 01:25:52 +01:00
},
{
"id": 748785405,
"name": "CVE-2024-23897",
"full_name": "xaitax\/CVE-2024-23897",
"owner": {
"login": "xaitax",
"id": 5014849,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/5014849?v=4",
"html_url": "https:\/\/github.com\/xaitax"
},
"html_url": "https:\/\/github.com\/xaitax\/CVE-2024-23897",
"description": "CVE-2024-23897 | Jenkins <= 2.441 & <= LTS 2.426.2 PoC and scanner. ",
"fork": false,
"created_at": "2024-01-26T19:00:03Z",
2024-04-15 02:27:17 +02:00
"updated_at": "2024-04-14T22:12:32Z",
2024-02-29 13:27:06 +01:00
"pushed_at": "2024-02-29T12:13:21Z",
2024-04-15 02:27:17 +02:00
"stargazers_count": 45,
"watchers_count": 45,
2024-01-27 01:25:52 +01:00
"has_discussions": false,
2024-03-15 19:27:09 +01:00
"forks_count": 18,
2024-01-27 01:25:52 +01:00
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
2024-03-15 19:27:09 +01:00
"forks": 18,
2024-04-15 02:27:17 +02:00
"watchers": 45,
2024-01-27 01:25:52 +01:00
"score": 0,
2024-03-04 07:26:30 +01:00
"subscribers_count": 3
2024-01-27 01:25:52 +01:00
},
{
"id": 748847022,
"name": "poc-cve-2024-23897",
"full_name": "vmtyan\/poc-cve-2024-23897",
"owner": {
"login": "vmtyan",
"id": 157635595,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/157635595?v=4",
"html_url": "https:\/\/github.com\/vmtyan"
},
"html_url": "https:\/\/github.com\/vmtyan\/poc-cve-2024-23897",
"description": null,
"fork": false,
"created_at": "2024-01-26T21:39:26Z",
2024-02-13 01:26:09 +01:00
"updated_at": "2024-02-12T18:38:29Z",
2024-01-27 01:25:52 +01:00
"pushed_at": "2024-01-26T21:46:10Z",
2024-02-13 01:26:09 +01:00
"stargazers_count": 1,
"watchers_count": 1,
2024-01-27 01:25:52 +01:00
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
2024-02-13 01:26:09 +01:00
"watchers": 1,
2024-01-26 13:39:18 +01:00
"score": 0,
2024-01-27 07:25:49 +01:00
"subscribers_count": 1
},
{
"id": 748932948,
"name": "CVE-2024-23897",
"full_name": "yoryio\/CVE-2024-23897",
"owner": {
"login": "yoryio",
"id": 134471901,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/134471901?v=4",
"html_url": "https:\/\/github.com\/yoryio"
},
"html_url": "https:\/\/github.com\/yoryio\/CVE-2024-23897",
"description": "Scanner for CVE-2024-23897 - Jenkins",
"fork": false,
"created_at": "2024-01-27T04:35:20Z",
2024-02-09 19:26:19 +01:00
"updated_at": "2024-02-09T17:37:28Z",
2024-03-13 07:26:57 +01:00
"pushed_at": "2024-03-13T05:52:30Z",
2024-02-09 19:26:19 +01:00
"stargazers_count": 2,
"watchers_count": 2,
2024-01-27 07:25:49 +01:00
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [
"cve-2024-23897",
"jenkins"
],
"visibility": "public",
"forks": 0,
2024-02-09 19:26:19 +01:00
"watchers": 2,
2024-01-27 07:25:49 +01:00
"score": 0,
2024-01-28 07:25:46 +01:00
"subscribers_count": 1
2024-01-27 19:25:26 +01:00
},
{
"id": 749052396,
"name": "CVE-2024-23897",
"full_name": "CKevens\/CVE-2024-23897",
"owner": {
"login": "CKevens",
"id": 7390055,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/7390055?v=4",
"html_url": "https:\/\/github.com\/CKevens"
},
"html_url": "https:\/\/github.com\/CKevens\/CVE-2024-23897",
"description": "CVE-2024-23897 jenkins-cli",
"fork": false,
"created_at": "2024-01-27T12:57:28Z",
2024-04-05 20:27:38 +02:00
"updated_at": "2024-04-05T14:30:45Z",
2024-01-27 19:25:26 +01:00
"pushed_at": "2024-01-27T13:10:37Z",
2024-04-05 20:27:38 +02:00
"stargazers_count": 12,
"watchers_count": 12,
2024-01-27 19:25:26 +01:00
"has_discussions": false,
2024-04-19 08:28:39 +02:00
"forks_count": 1,
2024-01-27 19:25:26 +01:00
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
2024-04-19 08:28:39 +02:00
"forks": 1,
2024-04-05 20:27:38 +02:00
"watchers": 12,
2024-01-27 19:25:26 +01:00
"score": 0,
2024-01-28 07:25:46 +01:00
"subscribers_count": 1
2024-01-27 19:25:26 +01:00
},
{
"id": 749060845,
2024-02-02 13:26:08 +01:00
"name": "PoC-Fix-jenkins-rce_CVE-2024-23897",
2024-02-14 19:26:24 +01:00
"full_name": "10T4\/PoC-Fix-jenkins-rce_CVE-2024-23897",
2024-01-27 19:25:26 +01:00
"owner": {
2024-02-14 19:26:24 +01:00
"login": "10T4",
2024-01-27 19:25:26 +01:00
"id": 148342080,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/148342080?v=4",
2024-02-14 19:26:24 +01:00
"html_url": "https:\/\/github.com\/10T4"
2024-01-27 19:25:26 +01:00
},
2024-02-14 19:26:24 +01:00
"html_url": "https:\/\/github.com\/10T4\/PoC-Fix-jenkins-rce_CVE-2024-23897",
2024-01-27 19:25:26 +01:00
"description": "on this git you can find all information on the CVE-2024-23897",
"fork": false,
"created_at": "2024-01-27T13:27:57Z",
2024-03-19 01:26:39 +01:00
"updated_at": "2024-03-18T21:30:46Z",
2024-01-27 19:25:26 +01:00
"pushed_at": "2024-01-27T14:43:18Z",
2024-03-19 01:26:39 +01:00
"stargazers_count": 6,
"watchers_count": 6,
2024-01-27 19:25:26 +01:00
"has_discussions": false,
2024-02-18 07:25:57 +01:00
"forks_count": 1,
2024-01-27 19:25:26 +01:00
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
2024-02-18 07:25:57 +01:00
"forks": 1,
2024-03-19 01:26:39 +01:00
"watchers": 6,
2024-01-27 19:25:26 +01:00
"score": 0,
2024-01-28 07:25:46 +01:00
"subscribers_count": 1
2024-01-28 01:25:25 +01:00
},
{
"id": 749172653,
"name": "CVE-2024-23897",
"full_name": "wjlin0\/CVE-2024-23897",
"owner": {
"login": "wjlin0",
"id": 91306421,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/91306421?v=4",
"html_url": "https:\/\/github.com\/wjlin0"
},
"html_url": "https:\/\/github.com\/wjlin0\/CVE-2024-23897",
"description": "CVE-2024-23897 - Jenkins 任意文件读取 利用工具",
"fork": false,
"created_at": "2024-01-27T19:34:48Z",
2024-04-17 08:28:30 +02:00
"updated_at": "2024-04-17T04:50:58Z",
2024-03-16 13:26:28 +01:00
"pushed_at": "2024-03-16T07:55:41Z",
2024-04-17 08:28:30 +02:00
"stargazers_count": 51,
"watchers_count": 51,
2024-01-28 01:25:25 +01:00
"has_discussions": false,
2024-04-17 14:29:25 +02:00
"forks_count": 9,
2024-01-28 01:25:25 +01:00
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [
"cve",
"cve-2024-23897",
"jenkins"
],
"visibility": "public",
2024-04-17 14:29:25 +02:00
"forks": 9,
2024-04-17 08:28:30 +02:00
"watchers": 51,
2024-01-28 07:25:46 +01:00
"score": 0,
2024-03-20 07:26:46 +01:00
"subscribers_count": 2
2024-01-28 07:25:46 +01:00
},
{
"id": 749248494,
"name": "CVE-2024-23897",
"full_name": "Vozec\/CVE-2024-23897",
"owner": {
"login": "Vozec",
"id": 61807609,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/61807609?v=4",
"html_url": "https:\/\/github.com\/Vozec"
},
"html_url": "https:\/\/github.com\/Vozec\/CVE-2024-23897",
"description": "This repository presents a proof-of-concept of CVE-2024-23897",
"fork": false,
"created_at": "2024-01-28T01:57:06Z",
2024-03-21 13:27:20 +01:00
"updated_at": "2024-03-21T08:27:05Z",
2024-04-16 14:32:18 +02:00
"pushed_at": "2024-04-16T06:56:39Z",
2024-03-21 13:27:20 +01:00
"stargazers_count": 11,
"watchers_count": 11,
2024-01-28 07:25:46 +01:00
"has_discussions": false,
2024-04-16 14:32:18 +02:00
"forks_count": 2,
2024-01-28 07:25:46 +01:00
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
2024-04-16 14:32:18 +02:00
"forks": 2,
2024-03-21 13:27:20 +01:00
"watchers": 11,
2024-01-28 01:25:25 +01:00
"score": 0,
2024-01-31 07:25:53 +01:00
"subscribers_count": 2
2024-01-28 19:25:44 +01:00
},
{
"id": 749389006,
"name": "CVE-2024-23897",
"full_name": "raheel0x01\/CVE-2024-23897",
"owner": {
"login": "raheel0x01",
"id": 65211256,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/65211256?v=4",
"html_url": "https:\/\/github.com\/raheel0x01"
},
"html_url": "https:\/\/github.com\/raheel0x01\/CVE-2024-23897",
"description": "Jenkins 2.441 and earlier, LTS 2.426.2 and earlier does not disable a feature of its CLI command parser that replaces an '@' character followed by a file path in an argument with the file's contents, allowing unauthenticated attackers to read arbitrary files on the Jenkins controller file system.",
"fork": false,
"created_at": "2024-01-28T12:53:23Z",
2024-01-30 01:26:04 +01:00
"updated_at": "2024-01-29T18:53:19Z",
2024-01-28 19:25:44 +01:00
"pushed_at": "2024-01-28T13:28:09Z",
2024-01-30 01:26:04 +01:00
"stargazers_count": 1,
"watchers_count": 1,
2024-01-28 19:25:44 +01:00
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
2024-01-30 01:26:04 +01:00
"watchers": 1,
2024-01-28 19:25:44 +01:00
"score": 0,
2024-01-29 07:25:51 +01:00
"subscribers_count": 1
},
{
"id": 749635165,
"name": "CVE-2024-23897",
"full_name": "viszsec\/CVE-2024-23897",
"owner": {
"login": "viszsec",
"id": 8476317,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/8476317?v=4",
"html_url": "https:\/\/github.com\/viszsec"
},
"html_url": "https:\/\/github.com\/viszsec\/CVE-2024-23897",
"description": "Jenkins POC of Arbitrary file read vulnerability through the CLI can lead to RCE",
"fork": false,
"created_at": "2024-01-29T04:41:53Z",
2024-02-27 13:26:53 +01:00
"updated_at": "2024-02-27T07:14:01Z",
2024-01-31 07:25:53 +01:00
"pushed_at": "2024-01-31T03:14:07Z",
2024-02-27 13:26:53 +01:00
"stargazers_count": 3,
"watchers_count": 3,
2024-01-29 07:25:51 +01:00
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
2024-02-27 13:26:53 +01:00
"watchers": 3,
2024-01-29 07:25:51 +01:00
"score": 0,
2024-01-30 07:26:00 +01:00
"subscribers_count": 1
2024-01-29 13:26:15 +01:00
},
{
"id": 749788968,
"name": "CVE-2024-23897",
"full_name": "jopraveen\/CVE-2024-23897",
"owner": {
"login": "jopraveen",
"id": 56404692,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/56404692?v=4",
"html_url": "https:\/\/github.com\/jopraveen"
},
"html_url": "https:\/\/github.com\/jopraveen\/CVE-2024-23897",
"description": null,
"fork": false,
"created_at": "2024-01-29T12:00:25Z",
2024-01-29 19:26:09 +01:00
"updated_at": "2024-01-29T18:02:51Z",
2024-01-29 13:26:15 +01:00
"pushed_at": "2024-01-29T12:14:08Z",
2024-01-29 19:26:09 +01:00
"stargazers_count": 1,
"watchers_count": 1,
2024-01-29 13:26:15 +01:00
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
2024-01-29 19:26:09 +01:00
"watchers": 1,
2024-01-29 13:26:15 +01:00
"score": 0,
2024-01-30 07:26:00 +01:00
"subscribers_count": 1
2024-02-01 07:25:56 +01:00
},
{
"id": 751156545,
"name": "Jenkins-CVE-2024-23897",
"full_name": "AbraXa5\/Jenkins-CVE-2024-23897",
"owner": {
"login": "AbraXa5",
"id": 41234094,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/41234094?v=4",
"html_url": "https:\/\/github.com\/AbraXa5"
},
"html_url": "https:\/\/github.com\/AbraXa5\/Jenkins-CVE-2024-23897",
2024-02-04 19:25:57 +01:00
"description": "PoC for Jenkins CVE-2024-23897",
2024-02-01 07:25:56 +01:00
"fork": false,
"created_at": "2024-02-01T03:17:35Z",
2024-02-05 07:26:53 +01:00
"updated_at": "2024-02-05T03:54:30Z",
2024-02-05 01:25:46 +01:00
"pushed_at": "2024-02-04T18:31:47Z",
2024-02-05 07:26:53 +01:00
"stargazers_count": 1,
"watchers_count": 1,
2024-02-01 07:25:56 +01:00
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
2024-02-05 07:26:53 +01:00
"watchers": 1,
2024-02-01 07:25:56 +01:00
"score": 0,
2024-02-02 07:25:54 +01:00
"subscribers_count": 1
2024-02-03 01:26:01 +01:00
},
{
"id": 752057600,
"name": "CVE-2024-23897-RCE",
"full_name": "brijne\/CVE-2024-23897-RCE",
"owner": {
"login": "brijne",
"id": 158627341,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/158627341?v=4",
"html_url": "https:\/\/github.com\/brijne"
},
"html_url": "https:\/\/github.com\/brijne\/CVE-2024-23897-RCE",
"description": "CVE-2024-23897 jenkins arbitrary file read which leads to unauthenticated RCE",
"fork": false,
"created_at": "2024-02-02T23:13:26Z",
"updated_at": "2024-02-02T23:13:27Z",
"pushed_at": "2024-02-02T23:19:35Z",
"stargazers_count": 0,
"watchers_count": 0,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 0,
"score": 0,
2024-02-03 07:25:41 +01:00
"subscribers_count": 1
2024-02-04 07:25:54 +01:00
},
{
"id": 752485327,
"name": "Jenkins-CVE-2024-23897-",
"full_name": "WLXQqwer\/Jenkins-CVE-2024-23897-",
"owner": {
"login": "WLXQqwer",
"id": 125850977,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/125850977?v=4",
"html_url": "https:\/\/github.com\/WLXQqwer"
},
"html_url": "https:\/\/github.com\/WLXQqwer\/Jenkins-CVE-2024-23897-",
"description": null,
"fork": false,
"created_at": "2024-02-04T01:14:40Z",
"updated_at": "2024-02-04T01:21:30Z",
"pushed_at": "2024-02-04T01:23:45Z",
"stargazers_count": 0,
"watchers_count": 0,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 0,
"score": 0,
2024-02-05 07:26:53 +01:00
"subscribers_count": 1
2024-02-05 19:27:14 +01:00
},
{
"id": 752803918,
"name": "CVE-2024-23897",
"full_name": "kaanatmacaa\/CVE-2024-23897",
"owner": {
"login": "kaanatmacaa",
"id": 57772940,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/57772940?v=4",
"html_url": "https:\/\/github.com\/kaanatmacaa"
},
"html_url": "https:\/\/github.com\/kaanatmacaa\/CVE-2024-23897",
"description": "Nuclei template for CVE-2024-23897 (Jenkins LFI Vulnerability)",
"fork": false,
"created_at": "2024-02-04T20:56:42Z",
2024-04-17 02:27:34 +02:00
"updated_at": "2024-04-16T21:53:27Z",
2024-02-05 19:27:14 +01:00
"pushed_at": "2024-02-05T14:10:26Z",
2024-04-17 02:27:34 +02:00
"stargazers_count": 15,
"watchers_count": 15,
2024-02-05 19:27:14 +01:00
"has_discussions": true,
2024-02-21 07:26:14 +01:00
"forks_count": 2,
2024-02-05 19:27:14 +01:00
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
2024-02-21 07:26:14 +01:00
"forks": 2,
2024-04-17 02:27:34 +02:00
"watchers": 15,
2024-02-05 19:27:14 +01:00
"score": 0,
2024-02-06 07:25:59 +01:00
"subscribers_count": 1
2024-02-07 19:26:20 +01:00
},
{
"id": 754184572,
"name": "CVE-2024-23897-Jenkins-Arbitrary-Read-File-Vulnerability",
"full_name": "Praison001\/CVE-2024-23897-Jenkins-Arbitrary-Read-File-Vulnerability",
"owner": {
"login": "Praison001",
"id": 60835238,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/60835238?v=4",
"html_url": "https:\/\/github.com\/Praison001"
},
"html_url": "https:\/\/github.com\/Praison001\/CVE-2024-23897-Jenkins-Arbitrary-Read-File-Vulnerability",
"description": "Jenkins 2.441 and earlier, LTS 2.426.2 and earlier does not disable a feature of its CLI command parser that replaces an '@' character followed by a file path in an argument with the file's contents, allowing unauthenticated attackers to read arbitrary files on the Jenkins controller file system.",
"fork": false,
"created_at": "2024-02-07T15:07:37Z",
2024-03-02 01:26:38 +01:00
"updated_at": "2024-03-01T18:35:57Z",
2024-02-09 19:26:19 +01:00
"pushed_at": "2024-02-09T13:22:36Z",
2024-03-02 01:26:38 +01:00
"stargazers_count": 1,
"watchers_count": 1,
2024-02-07 19:26:20 +01:00
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
2024-03-02 01:26:38 +01:00
"watchers": 1,
2024-02-07 19:26:20 +01:00
"score": 0,
2024-02-08 07:25:52 +01:00
"subscribers_count": 1
2024-02-14 01:26:17 +01:00
},
{
"id": 757151446,
"name": "CVE-2024-23897",
"full_name": "B4CK4TT4CK\/CVE-2024-23897",
"owner": {
"login": "B4CK4TT4CK",
"id": 76169213,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/76169213?v=4",
"html_url": "https:\/\/github.com\/B4CK4TT4CK"
},
"html_url": "https:\/\/github.com\/B4CK4TT4CK\/CVE-2024-23897",
"description": "CVE-2024-23897",
"fork": false,
"created_at": "2024-02-13T22:38:50Z",
"updated_at": "2024-02-13T22:40:08Z",
"pushed_at": "2024-02-13T22:44:48Z",
"stargazers_count": 0,
"watchers_count": 0,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 0,
"score": 0,
"subscribers_count": 0
2024-02-15 19:26:19 +01:00
},
2024-02-16 13:26:43 +01:00
{
"id": 758374072,
"name": "CVE-2024-23897",
"full_name": "godylockz\/CVE-2024-23897",
"owner": {
"login": "godylockz",
"id": 81207744,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/81207744?v=4",
"html_url": "https:\/\/github.com\/godylockz"
},
"html_url": "https:\/\/github.com\/godylockz\/CVE-2024-23897",
"description": "POC for CVE-2024-23897 Jenkins File-Read ",
"fork": false,
"created_at": "2024-02-16T07:16:04Z",
2024-04-16 14:32:18 +02:00
"updated_at": "2024-04-16T09:09:17Z",
2024-02-17 19:26:09 +01:00
"pushed_at": "2024-02-17T16:39:19Z",
2024-04-16 14:32:18 +02:00
"stargazers_count": 5,
"watchers_count": 5,
2024-02-16 13:26:43 +01:00
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
2024-04-16 14:32:18 +02:00
"watchers": 5,
2024-02-16 13:26:43 +01:00
"score": 0,
2024-02-17 07:25:54 +01:00
"subscribers_count": 1
2024-02-17 01:26:16 +01:00
},
{
"id": 758722924,
"name": "CVE-2024-23897",
"full_name": "ifconfig-me\/CVE-2024-23897",
"owner": {
"login": "ifconfig-me",
"id": 25315805,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/25315805?v=4",
"html_url": "https:\/\/github.com\/ifconfig-me"
},
"html_url": "https:\/\/github.com\/ifconfig-me\/CVE-2024-23897",
"description": "Jenkins Arbitrary File Leak Vulnerability [CVE-2024-23897]",
"fork": false,
"created_at": "2024-02-16T23:21:40Z",
"updated_at": "2024-02-16T23:23:25Z",
2024-02-17 19:26:09 +01:00
"pushed_at": "2024-02-17T15:20:01Z",
2024-02-17 01:26:16 +01:00
"stargazers_count": 0,
"watchers_count": 0,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 0,
"score": 0,
2024-02-17 07:25:54 +01:00
"subscribers_count": 1
2024-02-19 07:26:14 +01:00
},
{
"id": 759622445,
"name": "CVE-2024-23897",
"full_name": "ThatNotEasy\/CVE-2024-23897",
"owner": {
"login": "ThatNotEasy",
"id": 25004320,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/25004320?v=4",
"html_url": "https:\/\/github.com\/ThatNotEasy"
},
"html_url": "https:\/\/github.com\/ThatNotEasy\/CVE-2024-23897",
"description": "Perform with massive Jenkins Reading-2-RCE",
"fork": false,
"created_at": "2024-02-19T02:29:12Z",
2024-02-23 19:26:48 +01:00
"updated_at": "2024-02-23T13:32:49Z",
2024-03-02 13:26:20 +01:00
"pushed_at": "2024-03-02T07:55:22Z",
2024-02-19 07:26:14 +01:00
"stargazers_count": 0,
"watchers_count": 0,
2024-02-20 13:26:44 +01:00
"has_discussions": true,
2024-02-23 19:26:48 +01:00
"forks_count": 1,
2024-02-19 07:26:14 +01:00
"allow_forking": true,
2024-02-20 13:26:44 +01:00
"is_template": true,
2024-02-19 07:26:14 +01:00
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
2024-02-23 19:26:48 +01:00
"forks": 1,
2024-02-19 07:26:14 +01:00
"watchers": 0,
"score": 0,
2024-02-20 07:26:30 +01:00
"subscribers_count": 1
2024-02-20 19:26:44 +01:00
},
{
"id": 760525998,
"name": "CVE-2024-23897-Arbitrary-file-read",
"full_name": "pulentoski\/CVE-2024-23897-Arbitrary-file-read",
"owner": {
"login": "pulentoski",
"id": 60004847,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/60004847?v=4",
"html_url": "https:\/\/github.com\/pulentoski"
},
"html_url": "https:\/\/github.com\/pulentoski\/CVE-2024-23897-Arbitrary-file-read",
"description": "Un script realizado en python para atumatizar la vulnerabilidad CVE-2024-23897 ",
"fork": false,
"created_at": "2024-02-20T15:26:34Z",
"updated_at": "2024-02-20T15:38:30Z",
"pushed_at": "2024-02-20T16:18:28Z",
"stargazers_count": 0,
"watchers_count": 0,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 0,
"score": 0,
2024-02-21 07:26:14 +01:00
"subscribers_count": 1
2024-02-22 01:26:41 +01:00
},
{
"id": 761368362,
"name": "CVE-2024-23897",
"full_name": "Nebian\/CVE-2024-23897",
"owner": {
"login": "Nebian",
"id": 57531705,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/57531705?v=4",
"html_url": "https:\/\/github.com\/Nebian"
},
"html_url": "https:\/\/github.com\/Nebian\/CVE-2024-23897",
"description": "Scraping tool to ennumerate directories or files with the CVE-2024-23897 vulnerability in Jenkins.",
"fork": false,
"created_at": "2024-02-21T18:32:45Z",
2024-02-24 01:26:34 +01:00
"updated_at": "2024-02-23T23:55:35Z",
2024-02-22 01:26:41 +01:00
"pushed_at": "2024-02-21T19:07:17Z",
2024-02-24 01:26:34 +01:00
"stargazers_count": 1,
"watchers_count": 1,
2024-02-22 01:26:41 +01:00
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
2024-02-24 01:26:34 +01:00
"watchers": 1,
2024-02-22 01:26:41 +01:00
"score": 0,
2024-02-22 07:26:38 +01:00
"subscribers_count": 1
2024-02-26 07:26:39 +01:00
},
{
"id": 763302810,
"name": "CVE-2024-23897",
"full_name": "Abo5\/CVE-2024-23897",
"owner": {
"login": "Abo5",
"id": 40110835,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/40110835?v=4",
"html_url": "https:\/\/github.com\/Abo5"
},
"html_url": "https:\/\/github.com\/Abo5\/CVE-2024-23897",
"description": "This is an exploit script for CVE-2024-23897, a vulnerability affecting certain systems. The script is intended for educational and testing purposes only. Ensure that you have the necessary permissions before using it.",
"fork": false,
"created_at": "2024-02-26T03:07:28Z",
2024-02-27 07:26:38 +01:00
"updated_at": "2024-02-27T06:15:40Z",
2024-02-26 07:26:39 +01:00
"pushed_at": "2024-02-26T05:14:42Z",
2024-02-27 07:26:38 +01:00
"stargazers_count": 1,
"watchers_count": 1,
2024-02-26 07:26:39 +01:00
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
2024-02-27 07:26:38 +01:00
"watchers": 1,
2024-02-26 07:26:39 +01:00
"score": 0,
2024-02-27 07:26:38 +01:00
"subscribers_count": 1
2024-01-24 19:36:33 +01:00
}
]