Skip to content

access script file in Jenkins lead to rce #3761

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Closed
shadihh9 opened this issue May 20, 2025 · 1 comment
Closed

access script file in Jenkins lead to rce #3761

shadihh9 opened this issue May 20, 2025 · 1 comment
Labels
external Outside SeleniumBase's scope. / Ask somewhere else.

Comments

@shadihh9
Copy link

summery
i found bug access script file in Jenkins lead to rce and see seleniumbase
step to create
1-go to http://168.61.38.168/_script and see access script file in Jenkins lead to rce
2- and go to http://168.61.38.168/job/Test1/lastBuild/console and see seleniumbase
impact
can attacker access script file in Jenkins lead to rce

Image
@mdmintz mdmintz added the external Outside SeleniumBase's scope. / Ask somewhere else. label May 20, 2025
@mdmintz
Copy link
Member

mdmintz commented May 20, 2025

Not sure what you mean by "rce", but it's up to you to secure your own Jenkins instances.
The test_suite.py example has 4 tests (2 of which fail on purpose).

@mdmintz mdmintz closed this as completed May 20, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
external Outside SeleniumBase's scope. / Ask somewhere else.
Projects
None yet
Development

No branches or pull requests

2 participants