Description
A missing permission check in Jenkins extreme-feedback Plugin 1.7 and earlier allows attackers with Overall/Read permission to discover information about job names attached to lamps, discover MAC and IP addresses of existing lamps, and rename lamps.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-6879 | A missing permission check in Jenkins extreme-feedback Plugin 1.7 and earlier allows attackers with Overall/Read permission to discover information about job names attached to lamps, discover MAC and IP addresses of existing lamps, and rename lamps. |
Github GHSA |
GHSA-mrf6-4gw6-65v3 | Jenkins extreme-feedback Plugin vulnerable to Missing Authorization |
References
History
Wed, 28 May 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: jenkins
Published:
Updated: 2025-05-28T14:34:56.860Z
Reserved: 2022-09-21T00:00:00.000Z
Link: CVE-2022-41242
Updated: 2024-08-03T12:35:49.640Z
Status : Modified
Published: 2022-09-21T16:15:10.907
Modified: 2025-05-28T15:15:22.977
Link: CVE-2022-41242
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA