5
CVSSv2

CVE-2017-1000394

Published: 26/01/2018 Updated: 08/05/2019
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Jenkins 2.73.1 and previous versions, 2.83 and previous versions bundled a version of the commons-fileupload library with the denial-of-service vulnerability known as CVE-2016-3092. The fix for that vulnerability has been backported to the version of the library bundled with Jenkins.

Vulnerable Product Search on Vulmon Subscribe to Product

jenkins jenkins

Vendor Advisories

Jenkins 2731 and earlier, 283 and earlier bundled a version of the commons-fileupload library with the denial-of-service vulnerability known as CVE-2016-3092 The fix for that vulnerability has been backported to the version of the library bundled with Jenkins ...