8.2
CVSSv3

CVE-2022-36899

Published: 27/07/2022 Updated: 02/11/2023
CVSS v3 Base Score: 8.2 | Impact Score: 4.2 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Jenkins Compuware ISPW Operations Plugin 1.0.8 and previous versions does not restrict execution of a controller/agent message to agents, allowing attackers able to control agent processes to retrieve Java system properties.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

jenkins compuware_ispw_operations