CVE-2018-1000602
EUVD-2022-241626.06.2018, 17:29
A session fixation vulnerability exists in Jenkins SAML Plugin 1.0.6 and earlier in SamlSecurityRealm.java that allows unauthorized attackers to impersonate another users if they can control the pre-authentication session.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| jenkins | saml | 𝑥 ≤ 1.0.6 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration