Опубликовано: 25 нояб. 2015
Источник: ubuntu
Приоритет: low
EPSS Средний
CVSS2: 5
CVSS3: 7.5
Описание
The Fingerprints pages in Jenkins before 1.638 and LTS before 1.625.2 might allow remote attackers to obtain sensitive job and build name information via a direct request.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| esm-infra-legacy/trusty | DNE | |
| precise | ignored | end of life |
| precise/esm | DNE | precise was needed |
| trusty | DNE | |
| trusty/esm | DNE | |
| upstream | released | 1.638, 1.625.2 |
| vivid | DNE | |
| vivid/stable-phone-overlay | DNE | |
| vivid/ubuntu-core | DNE |
Показывать по
10
EPSS
Процентиль: 97%
0.22429
Средний
5 Medium
CVSS2
7.5 High
CVSS3
Связанные уязвимости
redhat
почти 11 лет назад
The Fingerprints pages in Jenkins before 1.638 and LTS before 1.625.2 might allow remote attackers to obtain sensitive job and build name information via a direct request.
CVSS3: 7.5
nvd
больше 10 лет назад
The Fingerprints pages in Jenkins before 1.638 and LTS before 1.625.2 might allow remote attackers to obtain sensitive job and build name information via a direct request.
CVSS3: 7.5
debian
больше 10 лет назад
The Fingerprints pages in Jenkins before 1.638 and LTS before 1.625.2 ...
CVSS3: 7.5
github
больше 4 лет назад
Jenkins discloses project names via fingerprints
EPSS
Процентиль: 97%
0.22429
Средний
5 Medium
CVSS2
7.5 High
CVSS3