CVE-2022-43416

HIGH

Jenkins Katalon Plugin <1.0.32 - RCE

Title source: llm
STIX 2.1

Description

Jenkins Katalon Plugin 1.0.32 and earlier implements an agent/controller message that does not limit where it can be executed and allows invoking Katalon with configurable arguments, allowing attackers able to control agent processes to invoke Katalon on the Jenkins controller with attacker-controlled version, install location, and arguments, and attackers additionally able to create files on the Jenkins controller (e.g., attackers with Item/Configure permission could archive artifacts) to invoke arbitrary OS commands.

References (2)

Core 2
Core References
Mailing List, Third Party Advisory mailing-list
http://www.openwall.com/lists/oss-security/2022/10/19/3

Scores

CVSS v3 8.8
EPSS 0.0274
EPSS Percentile 86.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-94
Status published
Products (2)
jenkins/katalon < 1.0.33
org.jenkins-ci.plugins/katalon 0 - 1.0.33Maven
Published Oct 19, 2022
Tracked Since Feb 18, 2026