GoCD Unauthenticated Dashboard Access Vulnerability Scanner
There is a unauthenticated dashboard access vulnerability in GoCD.
Short Info
Level
Medium
Single Scan
Single Scan
Can be used by
Asset Owner
Estimated Time
10 seconds
Time Interval
2 months 25 days
Scan only one
URL
Toolbox
-
GoCD, written in Java, is a popular CI/CD solution with a large range of users from NGOs to Fortune 500 companies with billions of dollars in revenue. Naturally, this makes it a critical piece of infrastructure and an extremely attractive target for attackers. In order to automate build and release processes, a centralized CI/CD solution has access to various production environments and private source code repositories.
A vulnerability that lets unauthenticated attackers access dashboard to a vulnerable GoCD Server instance.