Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2013-6373

Опубликовано: 21 нояб. 2013
Источник: redhat
CVSS2: 5
EPSS Низкий

Описание

The Exclusion plugin before 0.9 for Jenkins does not properly prevent access to resource locks, which allows remote authenticated users to list and release resources via unspecified vectors.

Отчет

Not affected. This issue did not affect Jenkins as shipped with various Red Hat products, as they do not include the Jenkins Exclusion plugin.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
OpenShift Enterprise 1jenkinsNot affected
Red Hat OpenShift Enterprise 2jenkinsNot affected

Показывать по

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=1032397Jenkins: lack of access control in Exclusion plugin (SECURITY-53)

EPSS

Процентиль: 60%
0.00403
Низкий

5 Medium

CVSS2

Связанные уязвимости

ubuntu
около 12 лет назад

The Exclusion plugin before 0.9 for Jenkins does not properly prevent access to resource locks, which allows remote authenticated users to list and release resources via unspecified vectors.

nvd
около 12 лет назад

The Exclusion plugin before 0.9 for Jenkins does not properly prevent access to resource locks, which allows remote authenticated users to list and release resources via unspecified vectors.

debian
около 12 лет назад

The Exclusion plugin before 0.9 for Jenkins does not properly prevent ...

github
больше 3 лет назад

Jenkins Exclusion Plugin allows Access to Resource Locks

EPSS

Процентиль: 60%
0.00403
Низкий

5 Medium

CVSS2