Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2016-0789

Опубликовано: 24 фев. 2016
Источник: redhat
CVSS2: 5.5
EPSS Низкий

Описание

CRLF injection vulnerability in the CLI command documentation in Jenkins before 1.650 and LTS before 1.642.2 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors.

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=1311947jenkins: HTTP response splitting vulnerability (SECURITY-238)

EPSS

Процентиль: 76%
0.0179
Низкий

5.5 Medium

CVSS2

Связанные уязвимости

CVSS3: 6.1
ubuntu
больше 10 лет назад

CRLF injection vulnerability in the CLI command documentation in Jenkins before 1.650 and LTS before 1.642.2 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors.

CVSS3: 6.1
nvd
больше 10 лет назад

CRLF injection vulnerability in the CLI command documentation in Jenkins before 1.650 and LTS before 1.642.2 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors.

CVSS3: 6.1
debian
больше 10 лет назад

CRLF injection vulnerability in the CLI command documentation in Jenki ...

CVSS3: 6.1
github
больше 4 лет назад

Jenkins has CRLF Injection Vulnerability in the CLI

EPSS

Процентиль: 76%
0.0179
Низкий

5.5 Medium

CVSS2