5.8
CVSSv2

CVE-2018-1000605

Published: 26/06/2018 Updated: 09/10/2018
CVSS v2 Base Score: 5.8 | Impact Score: 4.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.4 | Impact Score: 5.2 | Exploitability Score: 2.2
VMScore: 516
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:N

Vulnerability Summary

A man in the middle vulnerability exists in Jenkins CollabNet Plugin 2.0.4 and previous versions in CollabNetApp.java, CollabNetPlugin.java, CNFormFieldValidator.java that allows malicious users to impersonate any service that Jenkins connects to.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

jenkins collabnet