CVE-2019-10371
07.08.2019, 15:15
A session fixation vulnerability in Jenkins Gitlab Authentication Plugin 1.4 and earlier in GitLabSecurityRealm.java allows unauthorized attackers to impersonate another user if they can control the pre-authentication session.Enginsight
Vendor | Product | Version |
---|---|---|
jenkins | gitlab_oauth | 𝑥 ≤ 1.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration