Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-3665

Опубликовано: 25 нояб. 2015
Источник: nvd
CVSS2: 6.8
EPSS Низкий

Описание

Jenkins before 1.587 and LTS before 1.580.1 do not properly ensure trust separation between a master and slaves, which might allow remote attackers to execute arbitrary code on the master by leveraging access to the slave.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:jenkins:jenkins:*:*:*:*:*:*:*:*
Версия до 1.586 (включая)
Конфигурация 2
cpe:2.3:a:jenkins:jenkins:*:*:*:*:lts:*:*:*
Версия до 1.565.3 (включая)

EPSS

Процентиль: 83%
0.02502
Низкий

6.8 Medium

CVSS2

Дефекты

CWE-264

Связанные уязвимости

ubuntu
больше 10 лет назад

Jenkins before 1.587 and LTS before 1.580.1 do not properly ensure trust separation between a master and slaves, which might allow remote attackers to execute arbitrary code on the master by leveraging access to the slave.

redhat
почти 12 лет назад

Jenkins before 1.587 and LTS before 1.580.1 do not properly ensure trust separation between a master and slaves, which might allow remote attackers to execute arbitrary code on the master by leveraging access to the slave.

debian
больше 10 лет назад

Jenkins before 1.587 and LTS before 1.580.1 do not properly ensure tru ...

github
около 4 лет назад

Jenkins improperly ensures trust separation

EPSS

Процентиль: 83%
0.02502
Низкий

6.8 Medium

CVSS2

Дефекты

CWE-264