

Rewterz Threat Alert – Heodo Malware – Active IOCs
November 15, 2022
Rewterz Threat Alert – AZORult Malware – Active IOCs
November 15, 2022
Rewterz Threat Alert – Heodo Malware – Active IOCs
November 15, 2022
Rewterz Threat Alert – AZORult Malware – Active IOCs
November 15, 2022Severity
High
Analysis Summary
CVE-2022-43402
Jenkins Pipeline: Groovy Plugin could allow a remote authenticated attacker to execute arbitrary code on the system, caused by a sandbox bypass flaw. By sending a specially-crafted request, an attacker could exploit this vulnerability to execute arbitrary code in the context of the Jenkins controller JVM.
Impact
Code Execution
Indicators Of Compromise
CVE
- CVE-2022-43402
Affected Vendors
Jenkins
Affected Products
- Jenkins Pipeline: Groovy Plugin 2802.v5ea_628154b_c2
Remediation
Refer to Jenkins Security Advisory for patch, upgrade or suggested workaround information.