Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2014-3667

Jenkins before 1.583 and LTS before 1.565.3 does not properly prevent downloading of plugins, which allows remote authenticated users with the Overall/READ permission to obtain sensitive information by reading the plugin code.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 7.9%
CVSS Severity
CVSS v2 Score 4.0
Products affected by CVE-2014-3667


Contact Us

Shodan ® - All rights reserved