Beveiligingsadvies

CVE-2017-2599

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2018-04-11 16:00:00
Laatst bijgewerkt 2024-08-05 14:02:06
Toegewezen door redhat
CVSS-score 5.4
Status PUBLISHED

Beschrijving

Jenkins before versions 2.44 and 2.32.2 is vulnerable to an insufficient permission check. This allows users with permissions to create new items (e.g. jobs) to overwrite existing items they don't have access to (SECURITY-321).