Description
In jenkins before versions 2.44, 2.32.2 node monitor data could be viewed by low privilege users via the remote API. These included system configuration and runtime information of these nodes (SECURITY-343).
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-5584 | In jenkins before versions 2.44, 2.32.2 node monitor data could be viewed by low privilege users via the remote API. These included system configuration and runtime information of these nodes (SECURITY-343). |
Github GHSA |
GHSA-wj5c-j656-h5fw | Exposure of Sensitive Information to an Unauthorized Actor in Jenkins |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-05T14:02:06.499Z
Reserved: 2016-12-01T00:00:00.000Z
Link: CVE-2017-2600
No data.
Status : Modified
Published: 2018-05-15T20:29:00.213
Modified: 2024-11-21T03:23:48.307
Link: CVE-2017-2600
OpenCVE Enrichment
No data.
EUVD
Github GHSA