5
CVSSv2

CVE-2018-1000169

Published: 16/04/2018 Updated: 31/07/2019
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

An exposure of sensitive information vulnerability exists in Jenkins 2.115 and older, LTS 2.107.1 and older, in CLICommand.java and ViewOptionHandler.java that allows unauthorized malicious users to confirm the existence of agents or views with an attacker-specified name by sending a CLI command to Jenkins.

Vulnerable Product Search on Vulmon Subscribe to Product

jenkins jenkins

Vendor Advisories

An exposure of sensitive information vulnerability exists in Jenkins 2115 and older, LTS 21071 and older, in CLICommandjava and ViewOptionHandlerjava that allows unauthorized attackers to confirm the existence of agents or views with an attacker-specified name by sending a CLI command to Jenkins ...