Vulnerability Details CVE-2022-25195
A missing permission check in Jenkins autonomiq Plugin 1.15 and earlier allows attackers with Overall/Read permission to connect to an attacker-specified URL using attacker-specified credentials.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 52.4%
CVSS Severity
CVSS v3 Score 4.3
CVSS v2 Score 4.0
Products affected by CVE-2022-25195
-
cpe:2.3:a:jenkins:autonomiq:1.10
-
cpe:2.3:a:jenkins:autonomiq:1.11
-
cpe:2.3:a:jenkins:autonomiq:1.13
-
cpe:2.3:a:jenkins:autonomiq:1.15