Lucene search

K
prionPRIOn knowledge basePRION:CVE-2022-43428
HistoryOct 19, 2022 - 4:15 p.m.

Input validation

2022-10-1916:15:00
PRIOn knowledge base
www.prio-n.com
jenkins
compuware
topaz
total test plugin
security vulnerability
nvd
java system properties
agent/controller message
input validation

0.001 Low

EPSS

Percentile

33.5%

Jenkins Compuware Topaz for Total Test Plugin 2.4.8 and earlier implements an agent/controller message that does not limit where it can be executed, allowing attackers able to control agent processes to obtain the values of Java system properties from the Jenkins controller process.

CPENameOperatorVersion
compuware_topaz_for_total_testle2.4.8

0.001 Low

EPSS

Percentile

33.5%

Related for PRION:CVE-2022-43428