Логотип exploitDog
bind:CVE-2021-21639
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-21639

Количество 5

Количество 5

ubuntu логотип

CVE-2021-21639

почти 5 лет назад

Jenkins 2.286 and earlier, LTS 2.277.1 and earlier does not validate the type of object created after loading the data submitted to the `config.xml` REST API endpoint of a node, allowing attackers with Computer/Configure permission to replace a node with one of a different type.

CVSS3: 4.3
EPSS: Низкий
redhat логотип

CVE-2021-21639

почти 5 лет назад

Jenkins 2.286 and earlier, LTS 2.277.1 and earlier does not validate the type of object created after loading the data submitted to the `config.xml` REST API endpoint of a node, allowing attackers with Computer/Configure permission to replace a node with one of a different type.

CVSS3: 3.1
EPSS: Низкий
nvd логотип

CVE-2021-21639

почти 5 лет назад

Jenkins 2.286 and earlier, LTS 2.277.1 and earlier does not validate the type of object created after loading the data submitted to the `config.xml` REST API endpoint of a node, allowing attackers with Computer/Configure permission to replace a node with one of a different type.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2021-21639

почти 5 лет назад

Jenkins 2.286 and earlier, LTS 2.277.1 and earlier does not validate t ...

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-pvwx-3jx5-24r2

больше 3 лет назад

Lack of type validation in agent related REST API in Jenkins

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2021-21639

Jenkins 2.286 and earlier, LTS 2.277.1 and earlier does not validate the type of object created after loading the data submitted to the `config.xml` REST API endpoint of a node, allowing attackers with Computer/Configure permission to replace a node with one of a different type.

CVSS3: 4.3
1%
Низкий
почти 5 лет назад
redhat логотип
CVE-2021-21639

Jenkins 2.286 and earlier, LTS 2.277.1 and earlier does not validate the type of object created after loading the data submitted to the `config.xml` REST API endpoint of a node, allowing attackers with Computer/Configure permission to replace a node with one of a different type.

CVSS3: 3.1
1%
Низкий
почти 5 лет назад
nvd логотип
CVE-2021-21639

Jenkins 2.286 and earlier, LTS 2.277.1 and earlier does not validate the type of object created after loading the data submitted to the `config.xml` REST API endpoint of a node, allowing attackers with Computer/Configure permission to replace a node with one of a different type.

CVSS3: 4.3
1%
Низкий
почти 5 лет назад
debian логотип
CVE-2021-21639

Jenkins 2.286 and earlier, LTS 2.277.1 and earlier does not validate t ...

CVSS3: 4.3
1%
Низкий
почти 5 лет назад
github логотип
GHSA-pvwx-3jx5-24r2

Lack of type validation in agent related REST API in Jenkins

CVSS3: 4.3
1%
Низкий
больше 3 лет назад

Уязвимостей на страницу