CVE-2016-3723
17.05.2016, 14:08
Jenkins before 2.3 and LTS before 1.651.2 allow remote authenticated users with read access to obtain sensitive plugin installation information by leveraging missing permissions checks in unspecified XML/JSON API endpoints.Enginsight
Vendor | Product | Version |
---|---|---|
jenkins | jenkins | 𝑥 ≤ 2.2 |
jenkins | jenkins | 𝑥 ≤ 1.651.1 |
redhat | openshift | 3.1 |
redhat | openshift | 3.2 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration
References