Jenkins before versions 2.44 and 2.32.2 is vulnerable to an insufficient permission check. This allows users with permissions to create new items (e.g. jobs) to overwrite existing items they don't have access to (SECURITY-321).
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-3056 | Jenkins before versions 2.44 and 2.32.2 is vulnerable to an insufficient permission check. This allows users with permissions to create new items (e.g. jobs) to overwrite existing items they don't have access to (SECURITY-321). |
Github GHSA |
GHSA-7r4h-2h23-6jq9 | Incorrect Authorization in Jenkins |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-05T14:02:06.971Z
Reserved: 2016-12-01T00:00:00
Link: CVE-2017-2599
No data.
Status : Modified
Published: 2018-04-11T16:29:00.277
Modified: 2024-11-21T03:23:48.170
Link: CVE-2017-2599
OpenCVE Enrichment
No data.
EUVD
Github GHSA