6.5
CVSSv3

CVE-2016-3721

Published: 17/05/2016 Updated: 02/05/2024
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:N/I:P/A:N

Vulnerability Summary

Jenkins prior to 2.3 and LTS prior to 1.651.2 might allow remote authenticated users to inject arbitrary build parameters into the build environment via environment variables.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

redhat openshift 3.1

redhat openshift 3.2

jenkins jenkins

Mailing Lists

Jenkins is an open source automation server which enables developers around the world to reliably build, test, and deploy their software The following releases contain fixes for security vulnerabilities: * Git server Plugin 117veb_68868fa_027 * Script Security Plugin 1336vf33a_a_9863911 Additionally, we announce unresolved security issues in ...