EIP-2026-103288
PRE-CVEJenkins 2.150.2 - Remote Command Execution (Metasploit)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-103288. PoCs published by AkkuS.
AI-analyzed exploit summary This Metasploit module exploits a Jenkins vulnerability (CVE-2019-1003000) by creating a pipeline job with a NodeJS script that executes arbitrary commands via the 'sh' parameter, leading to remote command execution (RCE). It handles authentication, session management, and CSRF protection (Jenkins-Crumb).
Description
Jenkins 2.150.2 - Remote Command Execution (Metasploit)
Exploits (1)
This Metasploit module exploits a Jenkins vulnerability (CVE-2019-1003000) by creating a pipeline job with a NodeJS script that executes arbitrary commands via the 'sh' parameter, leading to remote command execution (RCE). It handles authentication, session management, and CSRF protection (Jenkins-Crumb).