Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2015-5317

The Fingerprints pages in Jenkins before 1.638 and LTS before 1.625.2 might allow remote attackers to obtain sensitive job and build name information via a direct request.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.286
EPSS Ranking 96.3%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 5.0
Proposed Action
Jenkins User Interface (UI) contains an information disclosure vulnerability that allows users to see the names of jobs and builds otherwise inaccessible to them on the "Fingerprints" pages.
Ransomware Campaign
Unknown
Products affected by CVE-2015-5317


Contact Us

Shodan ® - All rights reserved