4
CVSSv2

CVE-2017-1000087

Published: 05/10/2017 Updated: 02/11/2017
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Summary

GitHub Branch Source provides a list of applicable credential IDs to allow users configuring a job to select the one they'd like to use. This functionality did not check permissions, allowing any user with Overall/Read permission to get a list of valid credentials IDs. Those could be used as part of an attack to capture the credentials using another vulnerability.

Vulnerable Product Search on Vulmon Subscribe to Product

jenkins github branch source 0.1

jenkins github branch source 1.0

jenkins github branch source 1.1

jenkins github branch source 1.2

jenkins github branch source 2.0.1

jenkins github branch source 2.2.0

jenkins github branch source 1.7

jenkins github branch source 1.8

jenkins github branch source 1.8.1

jenkins github branch source 1.9

jenkins github branch source 2.0.3

jenkins github branch source 2.0.4

jenkins github branch source 2.0.5

jenkins github branch source 1.4

jenkins github branch source 1.5

jenkins github branch source 2.0.0

jenkins github branch source

jenkins github branch source 1.3

jenkins github branch source 1.6

jenkins github branch source 1.10

jenkins github branch source 2.0.2

jenkins github branch source 2.0.6