Описание
Jenkins before 1.640 and LTS before 1.625.2 allow remote attackers to bypass the CSRF protection mechanism via unspecified vectors.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| esm-infra-legacy/trusty | DNE | |
| precise | ignored | end of life |
| precise/esm | DNE | precise was needed |
| trusty | DNE | |
| trusty/esm | DNE | |
| upstream | released | 1.641, 1.625.3 |
| vivid | DNE | |
| vivid/stable-phone-overlay | DNE | |
| vivid/ubuntu-core | DNE |
Показывать по
10
6.8 Medium
CVSS2
8.8 High
CVSS3
Связанные уязвимости
redhat
около 10 лет назад
Jenkins before 1.640 and LTS before 1.625.2 allow remote attackers to bypass the CSRF protection mechanism via unspecified vectors.
CVSS3: 8.8
nvd
около 10 лет назад
Jenkins before 1.640 and LTS before 1.625.2 allow remote attackers to bypass the CSRF protection mechanism via unspecified vectors.
CVSS3: 8.8
debian
около 10 лет назад
Jenkins before 1.640 and LTS before 1.625.2 allow remote attackers to ...
CVSS3: 8.8
github
больше 3 лет назад
Jenkins Vulnerable to Cross-Site Request Forgery (CSRF) Attack
6.8 Medium
CVSS2
8.8 High
CVSS3