5
CVSSv2

CVE-2015-5322

Published: 25/11/2015 Updated: 17/12/2019
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Directory traversal vulnerability in Jenkins prior to 1.638 and LTS prior to 1.625.2 allows remote malicious users to list directory contents and read arbitrary files in the Jenkins servlet resources via directory traversal sequences in a request to jnlpJars/.

Vulnerable Product Search on Vulmon Subscribe to Product

redhat openshift

redhat openshift 2.0

jenkins jenkins

Vendor Advisories

Directory traversal vulnerability in Jenkins before 1638 and LTS before 16252 allows remote attackers to list directory contents and read arbitrary files in the Jenkins servlet resources via directory traversal sequences in a request to jnlpJars/ ...