| Added |
CPE Configuration |
|
OR
*cpe:2.3:a:jenkins:jenkins:*:*:*:*:lts:*:*:* versions up to (excluding) 2.32.2
*cpe:2.3:a:jenkins:jenkins:*:*:*:*:*:*:*:* versions up to (excluding) 2.44 |
| Added |
CVSS V2 |
|
(AV:N/AC:M/Au:S/C:N/I:P/A:N) |
| Added |
CVSS V2 Metadata |
|
Victim must voluntarily interact with attack mechanism |
| Added |
CVSS V3 |
|
AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N |
| Added |
CWE |
|
CWE-79 |
| Changed |
Reference Type |
http://www.securityfocus.com/bid/95960 No Types Assigned |
http://www.securityfocus.com/bid/95960 Third Party Advisory, VDB Entry |
| Changed |
Reference Type |
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-2601 No Types Assigned |
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-2601 Issue Tracking, Patch |
| Changed |
Reference Type |
https://github.com/jenkinsci/jenkins/commit/fd2e081b947124c90bcd97bfc55e1a7f2ef41a74 No Types Assigned |
https://github.com/jenkinsci/jenkins/commit/fd2e081b947124c90bcd97bfc55e1a7f2ef41a74 Patch |
| Changed |
Reference Type |
https://jenkins.io/security/advisory/2017-02-01/ No Types Assigned |
https://jenkins.io/security/advisory/2017-02-01/ Vendor Advisory |