Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2022-34175

Опубликовано: 23 июн. 2022
Источник: debian
EPSS Низкий

Описание

Jenkins 2.335 through 2.355 (both inclusive) allows attackers in some cases to bypass a protection mechanism, thereby directly accessing some view fragments containing sensitive information, bypassing any permission checks in the corresponding view.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
jenkinsremovedpackage

EPSS

Процентиль: 88%
0.04136
Низкий

Связанные уязвимости

CVSS3: 7.5
redhat
больше 3 лет назад

Jenkins 2.335 through 2.355 (both inclusive) allows attackers in some cases to bypass a protection mechanism, thereby directly accessing some view fragments containing sensitive information, bypassing any permission checks in the corresponding view.

CVSS3: 7.5
nvd
больше 3 лет назад

Jenkins 2.335 through 2.355 (both inclusive) allows attackers in some cases to bypass a protection mechanism, thereby directly accessing some view fragments containing sensitive information, bypassing any permission checks in the corresponding view.

CVSS3: 7.5
github
больше 3 лет назад

Unauthorized view fragment access in Jenkins

EPSS

Процентиль: 88%
0.04136
Низкий