Логотип exploitDog
bind:CVE-2017-1000395
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2017-1000395

Количество 5

Количество 5

ubuntu логотип

CVE-2017-1000395

около 8 лет назад

Jenkins 2.73.1 and earlier, 2.83 and earlier provides information about Jenkins user accounts which is generally available to anyone with Overall/Read permissions via the /user/(username)/api remote API. This included e.g. Jenkins users' email addresses if the Mailer Plugin is installed. The remote API now no longer includes information beyond the most basic (user ID and name) unless the user requesting it is a Jenkins administrator.

CVSS3: 4.3
EPSS: Низкий
redhat логотип

CVE-2017-1000395

больше 8 лет назад

Jenkins 2.73.1 and earlier, 2.83 and earlier provides information about Jenkins user accounts which is generally available to anyone with Overall/Read permissions via the /user/(username)/api remote API. This included e.g. Jenkins users' email addresses if the Mailer Plugin is installed. The remote API now no longer includes information beyond the most basic (user ID and name) unless the user requesting it is a Jenkins administrator.

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2017-1000395

около 8 лет назад

Jenkins 2.73.1 and earlier, 2.83 and earlier provides information about Jenkins user accounts which is generally available to anyone with Overall/Read permissions via the /user/(username)/api remote API. This included e.g. Jenkins users' email addresses if the Mailer Plugin is installed. The remote API now no longer includes information beyond the most basic (user ID and name) unless the user requesting it is a Jenkins administrator.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2017-1000395

около 8 лет назад

Jenkins 2.73.1 and earlier, 2.83 and earlier provides information abou ...

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-wqv4-9gr3-3qgh

больше 3 лет назад

Exposure of Sensitive Information to an Unauthorized Actor in Jenkins

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2017-1000395

Jenkins 2.73.1 and earlier, 2.83 and earlier provides information about Jenkins user accounts which is generally available to anyone with Overall/Read permissions via the /user/(username)/api remote API. This included e.g. Jenkins users' email addresses if the Mailer Plugin is installed. The remote API now no longer includes information beyond the most basic (user ID and name) unless the user requesting it is a Jenkins administrator.

CVSS3: 4.3
0%
Низкий
около 8 лет назад
redhat логотип
CVE-2017-1000395

Jenkins 2.73.1 and earlier, 2.83 and earlier provides information about Jenkins user accounts which is generally available to anyone with Overall/Read permissions via the /user/(username)/api remote API. This included e.g. Jenkins users' email addresses if the Mailer Plugin is installed. The remote API now no longer includes information beyond the most basic (user ID and name) unless the user requesting it is a Jenkins administrator.

CVSS3: 4.3
0%
Низкий
больше 8 лет назад
nvd логотип
CVE-2017-1000395

Jenkins 2.73.1 and earlier, 2.83 and earlier provides information about Jenkins user accounts which is generally available to anyone with Overall/Read permissions via the /user/(username)/api remote API. This included e.g. Jenkins users' email addresses if the Mailer Plugin is installed. The remote API now no longer includes information beyond the most basic (user ID and name) unless the user requesting it is a Jenkins administrator.

CVSS3: 4.3
0%
Низкий
около 8 лет назад
debian логотип
CVE-2017-1000395

Jenkins 2.73.1 and earlier, 2.83 and earlier provides information abou ...

CVSS3: 4.3
0%
Низкий
около 8 лет назад
github логотип
GHSA-wqv4-9gr3-3qgh

Exposure of Sensitive Information to an Unauthorized Actor in Jenkins

CVSS3: 4.3
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу