Описание
Missing permission checks in Jenkins Gitee Plugin 1288.v18b_deb_c9069b_ and earlier allow attackers with Overall/Read permission to connect to an attacker-specified URL using attacker-specified credentials IDs obtained through another method.
EPSS
Процентиль: 14%
0.0023
Низкий
5.4 Medium
CVSS3
Дефекты
CWE-862
Связанные уязвимости
CVSS3: 5.4
github
2 месяца назад
Missing permission checks in Jenkins Gitee Plugin 1288.v18b_deb_c9069b_ and earlier allow attackers with Overall/Read permission to connect to an attacker-specified URL using attacker-specified credentials IDs obtained through another method.
EPSS
Процентиль: 14%
0.0023
Низкий
5.4 Medium
CVSS3
Дефекты
CWE-862