Логотип exploitDog
bind:CVE-2017-1000396
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2017-1000396

Количество 5

Количество 5

ubuntu логотип

CVE-2017-1000396

около 8 лет назад

Jenkins 2.73.1 and earlier, 2.83 and earlier bundled a version of the commons-httpclient library with the vulnerability CVE-2012-6153 that incorrectly verified SSL certificates, making it susceptible to man-in-the-middle attacks. This library is widely used as a transitive dependency in Jenkins plugins. The fix for CVE-2012-6153 was backported to the version of commons-httpclient that is bundled in core and made available to plugins.

CVSS3: 5.9
EPSS: Низкий
redhat логотип

CVE-2017-1000396

больше 8 лет назад

Jenkins 2.73.1 and earlier, 2.83 and earlier bundled a version of the commons-httpclient library with the vulnerability CVE-2012-6153 that incorrectly verified SSL certificates, making it susceptible to man-in-the-middle attacks. This library is widely used as a transitive dependency in Jenkins plugins. The fix for CVE-2012-6153 was backported to the version of commons-httpclient that is bundled in core and made available to plugins.

CVSS3: 4.8
EPSS: Низкий
nvd логотип

CVE-2017-1000396

около 8 лет назад

Jenkins 2.73.1 and earlier, 2.83 and earlier bundled a version of the commons-httpclient library with the vulnerability CVE-2012-6153 that incorrectly verified SSL certificates, making it susceptible to man-in-the-middle attacks. This library is widely used as a transitive dependency in Jenkins plugins. The fix for CVE-2012-6153 was backported to the version of commons-httpclient that is bundled in core and made available to plugins.

CVSS3: 5.9
EPSS: Низкий
debian логотип

CVE-2017-1000396

около 8 лет назад

Jenkins 2.73.1 and earlier, 2.83 and earlier bundled a version of the ...

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-fq9f-9wv9-rfmg

больше 3 лет назад

Improper Certificate Validation in Jenkins

CVSS3: 5.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2017-1000396

Jenkins 2.73.1 and earlier, 2.83 and earlier bundled a version of the commons-httpclient library with the vulnerability CVE-2012-6153 that incorrectly verified SSL certificates, making it susceptible to man-in-the-middle attacks. This library is widely used as a transitive dependency in Jenkins plugins. The fix for CVE-2012-6153 was backported to the version of commons-httpclient that is bundled in core and made available to plugins.

CVSS3: 5.9
0%
Низкий
около 8 лет назад
redhat логотип
CVE-2017-1000396

Jenkins 2.73.1 and earlier, 2.83 and earlier bundled a version of the commons-httpclient library with the vulnerability CVE-2012-6153 that incorrectly verified SSL certificates, making it susceptible to man-in-the-middle attacks. This library is widely used as a transitive dependency in Jenkins plugins. The fix for CVE-2012-6153 was backported to the version of commons-httpclient that is bundled in core and made available to plugins.

CVSS3: 4.8
0%
Низкий
больше 8 лет назад
nvd логотип
CVE-2017-1000396

Jenkins 2.73.1 and earlier, 2.83 and earlier bundled a version of the commons-httpclient library with the vulnerability CVE-2012-6153 that incorrectly verified SSL certificates, making it susceptible to man-in-the-middle attacks. This library is widely used as a transitive dependency in Jenkins plugins. The fix for CVE-2012-6153 was backported to the version of commons-httpclient that is bundled in core and made available to plugins.

CVSS3: 5.9
0%
Низкий
около 8 лет назад
debian логотип
CVE-2017-1000396

Jenkins 2.73.1 and earlier, 2.83 and earlier bundled a version of the ...

CVSS3: 5.9
0%
Низкий
около 8 лет назад
github логотип
GHSA-fq9f-9wv9-rfmg

Improper Certificate Validation in Jenkins

CVSS3: 5.9
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу