Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3857-xm38-jmq2

Опубликовано: 14 мая 2022
Источник: github
Github: Прошло ревью
CVSS3: 4.3

Описание

Incorrect Authorization in Jenkins Core

Jenkins before 2.3 and LTS before 1.651.2 allow remote authenticated users with multiple accounts to cause a denial of service (unable to login) by editing the "full name."

Пакеты

Наименование

org.jenkins-ci.main:jenkins-core

maven
Затронутые версииВерсия исправления

< 2.3

2.3

EPSS

Процентиль: 82%
0.02293
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 4.3
ubuntu
больше 10 лет назад

Jenkins before 2.3 and LTS before 1.651.2 allow remote authenticated users with multiple accounts to cause a denial of service (unable to login) by editing the "full name."

redhat
больше 10 лет назад

Jenkins before 2.3 and LTS before 1.651.2 allow remote authenticated users with multiple accounts to cause a denial of service (unable to login) by editing the "full name."

CVSS3: 4.3
nvd
больше 10 лет назад

Jenkins before 2.3 and LTS before 1.651.2 allow remote authenticated users with multiple accounts to cause a denial of service (unable to login) by editing the "full name."

CVSS3: 4.3
debian
больше 10 лет назад

Jenkins before 2.3 and LTS before 1.651.2 allow remote authenticated u ...

EPSS

Процентиль: 82%
0.02293
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-863