Количество 4
Количество 4
CVE-2018-1000195
A server-side request forgery vulnerability exists in Jenkins 2.120 and older, LTS 2.107.2 and older in ZipExtractionInstaller.java that allows users with Overall/Read permission to have Jenkins submit a HTTP GET request to an arbitrary URL and learn whether the response is successful (200) or not.
CVE-2018-1000195
A server-side request forgery vulnerability exists in Jenkins 2.120 and older, LTS 2.107.2 and older in ZipExtractionInstaller.java that allows users with Overall/Read permission to have Jenkins submit a HTTP GET request to an arbitrary URL and learn whether the response is successful (200) or not.
CVE-2018-1000195
A server-side request forgery vulnerability exists in Jenkins 2.120 an ...
GHSA-rgmj-mccj-h9mx
Cross-Site Request Forgery in Jenkins
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2018-1000195 A server-side request forgery vulnerability exists in Jenkins 2.120 and older, LTS 2.107.2 and older in ZipExtractionInstaller.java that allows users with Overall/Read permission to have Jenkins submit a HTTP GET request to an arbitrary URL and learn whether the response is successful (200) or not. | CVSS3: 3.5 | 1% Низкий | больше 7 лет назад | |
CVE-2018-1000195 A server-side request forgery vulnerability exists in Jenkins 2.120 and older, LTS 2.107.2 and older in ZipExtractionInstaller.java that allows users with Overall/Read permission to have Jenkins submit a HTTP GET request to an arbitrary URL and learn whether the response is successful (200) or not. | CVSS3: 4.3 | 1% Низкий | больше 7 лет назад | |
CVE-2018-1000195 A server-side request forgery vulnerability exists in Jenkins 2.120 an ... | CVSS3: 4.3 | 1% Низкий | больше 7 лет назад | |
GHSA-rgmj-mccj-h9mx Cross-Site Request Forgery in Jenkins | CVSS3: 4.3 | 1% Низкий | больше 3 лет назад |
Уязвимостей на страницу