CVE-2023-32263

CVSS v3.1 5.7 (Medium)
57% Progress
EPSS 0.06 % (28th)
0.06% Progress
Affected Products 1
Advisories 1

A potential vulnerability has been identified in the Micro Focus Dimensions CM Plugin for Jenkins. The vulnerability could be exploited to retrieve a login certificate if an authenticated user is duped into using an attacker-controlled Dimensions CM server. This vulnerability only applies when the Jenkins plugin is configured to use login certificate credentials.

https://www.jenkins.io/security/advisory/2023-06-14/

Weaknesses
CWE-NVD-noinfo
CVE Status
PUBLISHED
CNA
OpenText
Published Date
2023-07-19 16:15:09
(14 months ago)
Updated Date
2023-07-28 14:22:16
(13 months ago)

Affected Products

Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Microfocus Dimensions Cm for Jenkins from 0.8.17 version and 0.9.3 and prior versions cpe:2.3:a:microfocus:dimensions_cm::*:*:*:*:jenkins >= 0.8.17 <= 0.9.3
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...