VYPR

Wmi Windows Agents

by Jenkins Project

Source repositories

CVEs (2)

  • CVE-2022-30951HigMay 17, 2022
    risk 0.50cvss 8.8epss 0.01

    Jenkins WMI Windows Agents Plugin 1.8 and earlier includes the Windows Remote Command library does not implement access control, potentially allowing users to start processes even if they're not allowed to log in.

  • CVE-2022-30950HigMay 17, 2022
    risk 0.50cvss 8.8epss 0.02

    Jenkins WMI Windows Agents Plugin 1.8 and earlier includes the Windows Remote Command library which has a buffer overflow vulnerability that may allow users able to connect to a named pipe to execute commands on the Windows agent machine.