Логотип exploitDog
bind:CVE-2023-41945
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-41945

Количество 2

Количество 2

nvd логотип

CVE-2023-41945

больше 2 лет назад

Jenkins Assembla Auth Plugin 1.14 and earlier does not verify that the permissions it grants are enabled, resulting in users with EDIT permissions to be granted Overall/Manage and Overall/SystemRead permissions, even if those permissions are disabled and should not be granted.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-qf42-f5vf-6w99

больше 2 лет назад

Disabled permissions granted by Jenkins Assembla Auth Plugin

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-41945

Jenkins Assembla Auth Plugin 1.14 and earlier does not verify that the permissions it grants are enabled, resulting in users with EDIT permissions to be granted Overall/Manage and Overall/SystemRead permissions, even if those permissions are disabled and should not be granted.

CVSS3: 8.8
0%
Низкий
больше 2 лет назад
github логотип
GHSA-qf42-f5vf-6w99

Disabled permissions granted by Jenkins Assembla Auth Plugin

CVSS3: 8.8
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу