← volver
CVE-2017-2599

CVE-2017-2599

CVSS 5.4 MEDIUMEPSS 1.1%CWE-863
Jenkins before versions 2.44 and 2.32.2 is vulnerable to an insufficient permission check. This allows users with permissions to create new items (e.g. jobs) to overwrite existing items they don't have access to (SECURITY-321).
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
Productos afectados
[UNKNOWN] · jenkins

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →