Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2014-3664

Опубликовано: 02 окт. 2014
Источник: redhat
CVSS2: 5

Описание

Directory traversal vulnerability in Jenkins before 1.583 and LTS before 1.565.3 allows remote authenticated users with the Overall/READ permission to read arbitrary files via unspecified vectors.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
OpenShift Enterprise 1jenkinsWill not fix
Red Hat OpenShift Enterprise 2.1jenkinsFixedRHBA-2014:163014.10.2014
Red Hat OpenShift Enterprise 2.1jenkins-plugin-openshiftFixedRHBA-2014:163014.10.2014
Red Hat OpenShift Enterprise 2.1openshift-origin-cartridge-jenkinsFixedRHBA-2014:163014.10.2014
Red Hat OpenShift Enterprise 3.1atomic-openshiftFixedRHSA-2016:007026.01.2016
Red Hat OpenShift Enterprise 3.1heapsterFixedRHSA-2016:007026.01.2016
Red Hat OpenShift Enterprise 3.1jenkinsFixedRHSA-2016:007026.01.2016
Red Hat OpenShift Enterprise 3.1nodejs-align-textFixedRHSA-2016:007026.01.2016
Red Hat OpenShift Enterprise 3.1nodejs-ansi-greenFixedRHSA-2016:007026.01.2016
Red Hat OpenShift Enterprise 3.1nodejs-ansi-wrapFixedRHSA-2016:007026.01.2016

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-22
https://bugzilla.redhat.com/show_bug.cgi?id=1147765jenkins: directory traversal flaw (SECURITY-131)

5 Medium

CVSS2

Связанные уязвимости

ubuntu
около 11 лет назад

Directory traversal vulnerability in Jenkins before 1.583 and LTS before 1.565.3 allows remote authenticated users with the Overall/READ permission to read arbitrary files via unspecified vectors.

nvd
около 11 лет назад

Directory traversal vulnerability in Jenkins before 1.583 and LTS before 1.565.3 allows remote authenticated users with the Overall/READ permission to read arbitrary files via unspecified vectors.

debian
около 11 лет назад

Directory traversal vulnerability in Jenkins before 1.583 and LTS befo ...

github
больше 3 лет назад

Jenkins Path Traversal vulnerability

5 Medium

CVSS2