4.3
CVSSv2

CVE-2014-3681

Published: 15/10/2014 Updated: 13/02/2023
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in Jenkins prior to 1.583 and LTS prior to 1.565.3 allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

redhat openshift

jenkins jenkins

Vendor Advisories

Debian Bug report logs - #763899 jenkins: multiple security vulnerabilities Package: jenkins; Maintainer for jenkins is (unknown); Reported by: Nobuhiro Ban <bannobuhiro@gmailcom> Date: Fri, 3 Oct 2014 15:03:02 UTC Severity: grave Tags: security Found in version jenkins/15652-2 Fixed in version jenkins/15653-1 Don ...
Cross-site scripting (XSS) vulnerability in Jenkins before 1583 and LTS before 15653 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors ...