Описание
Jenkins before 2.3 and LTS before 1.651.2 allow remote authenticated users with multiple accounts to cause a denial of service (unable to login) by editing the "full name."
Ссылки
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 1.651.1 (включая)
cpe:2.3:a:jenkins:jenkins:*:*:*:*:lts:*:*:*
Конфигурация 2
Одно из
cpe:2.3:a:redhat:openshift:3.1:*:*:*:enterprise:*:*:*
cpe:2.3:a:redhat:openshift:3.2:*:*:*:enterprise:*:*:*
Конфигурация 3Версия до 2.2 (включая)
cpe:2.3:a:jenkins:jenkins:*:*:*:*:*:*:*:*
EPSS
Процентиль: 82%
0.02293
Низкий
4.3 Medium
CVSS3
4 Medium
CVSS2
Дефекты
CWE-264
Связанные уязвимости
CVSS3: 4.3
ubuntu
больше 10 лет назад
Jenkins before 2.3 and LTS before 1.651.2 allow remote authenticated users with multiple accounts to cause a denial of service (unable to login) by editing the "full name."
redhat
больше 10 лет назад
Jenkins before 2.3 and LTS before 1.651.2 allow remote authenticated users with multiple accounts to cause a denial of service (unable to login) by editing the "full name."
CVSS3: 4.3
debian
больше 10 лет назад
Jenkins before 2.3 and LTS before 1.651.2 allow remote authenticated u ...
EPSS
Процентиль: 82%
0.02293
Низкий
4.3 Medium
CVSS3
4 Medium
CVSS2
Дефекты
CWE-264