CVE-2017-2599
CVSS v3.1
5.4 (Medium)
CVSS v2.0
5.5 (Medium)
EPSS
0.13 % (49th)
Affected Products
1
Advisories
2
Jenkins before versions 2.44 and 2.32.2 is vulnerable to an insufficient permission check. This allows users with permissions to create new items (e.g. jobs) to overwrite existing items they don't have access to (SECURITY-321).
Weaknesses
- CWE-863
- Incorrect Authorization
- CVE Status
- PUBLISHED
- CNA
- Red Hat, Inc.
- Published Date
-
2018-04-11 16:29:00
(6 years ago) - Updated Date
-
2022-11-30 21:19:48
(21 months ago)
Affected Products
Loading...
Loading...
Configuration #1
|
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...