Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-3665

Опубликовано: 25 нояб. 2015
Источник: nvd
CVSS2: 6.8
EPSS Низкий

Описание

Jenkins before 1.587 and LTS before 1.580.1 do not properly ensure trust separation between a master and slaves, which might allow remote attackers to execute arbitrary code on the master by leveraging access to the slave.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:jenkins:jenkins:*:*:*:*:*:*:*:*
Версия до 1.586 (включая)
Конфигурация 2
cpe:2.3:a:jenkins:jenkins:*:*:*:*:lts:*:*:*
Версия до 1.565.3 (включая)

EPSS

Процентиль: 64%
0.00476
Низкий

6.8 Medium

CVSS2

Дефекты

CWE-264

Связанные уязвимости

ubuntu
около 10 лет назад

Jenkins before 1.587 and LTS before 1.580.1 do not properly ensure trust separation between a master and slaves, which might allow remote attackers to execute arbitrary code on the master by leveraging access to the slave.

redhat
больше 11 лет назад

Jenkins before 1.587 and LTS before 1.580.1 do not properly ensure trust separation between a master and slaves, which might allow remote attackers to execute arbitrary code on the master by leveraging access to the slave.

debian
около 10 лет назад

Jenkins before 1.587 and LTS before 1.580.1 do not properly ensure tru ...

github
больше 3 лет назад

Jenkins improperly ensures trust separation

EPSS

Процентиль: 64%
0.00476
Низкий

6.8 Medium

CVSS2

Дефекты

CWE-264