CVE-2023-3315
CVSS v3.1
4.3 (Medium)
EPSS
0.05 % (18th)
Affected Products
1
Advisories
2
Missing permission checks in Jenkins Team Concert Plugin 2.4.1 and earlier allow attackers with Overall/Read permission to check for the existence of an attacker-specified file path on the Jenkins controller file system.
Weaknesses
- CWE-862
- Missing Authorization
- CVE Status
- PUBLISHED
- CNA
- Jenkins Project
- Published Date
-
2023-06-19 21:15:42
(15 months ago) - Updated Date
-
2023-06-27 17:08:44
(14 months ago)
Affected Products
Loading...
Loading...
Loading...
Configuration #1
|
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...