2.1
CVSSv2

CVE-2013-2033

Published: 10/04/2014 Updated: 13/02/2023
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 187
Vector: AV:N/AC:H/Au:S/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in Jenkins prior to 1.514, LTS prior to 1.509.1, and Enterprise 1.466.x prior to 1.466.14.1 and 1.480.x prior to 1.480.4.1 allows remote authenticated users with write permission to inject arbitrary web script or HTML via unspecified vectors.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

jenkins jenkins

cloudbees jenkins

Vendor Advisories

Debian Bug report logs - #706725 jenkins: multiple security vulnerabilities Package: jenkins; Maintainer for jenkins is (unknown); Reported by: Nobuhiro Ban <bannobuhiro@gmailcom> Date: Fri, 3 May 2013 18:57:02 UTC Severity: grave Tags: security Found in version jenkins/14472+dfsg-3 Fixed in version jenkins/15092+d ...
Cross-site scripting (XSS) vulnerability in Jenkins before 1514, LTS before 15091, and Enterprise 1466x before 1466141 and 1480x before 148041 allows remote authenticated users with write permission to inject arbitrary web script or HTML via unspecified vectors ...