Количество 2
Количество 2
CVE-2019-1003099
почти 7 лет назад
A missing permission check in Jenkins openid Plugin in the OpenIdSsoSecurityRealm.DescriptorImpl#doValidate form validation method allows attackers with Overall/Read permission to initiate a connection to an attacker-specified server.
CVSS3: 6.5
EPSS: Низкий
GHSA-3f3p-qhfv-7p8h
больше 3 лет назад
Jenkins openid Plugin missing permission check
CVSS3: 6.5
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2019-1003099 A missing permission check in Jenkins openid Plugin in the OpenIdSsoSecurityRealm.DescriptorImpl#doValidate form validation method allows attackers with Overall/Read permission to initiate a connection to an attacker-specified server. | CVSS3: 6.5 | 0% Низкий | почти 7 лет назад | |
GHSA-3f3p-qhfv-7p8h Jenkins openid Plugin missing permission check | CVSS3: 6.5 | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу
20