|
248411
|
5.3 |
MEDIUM
Network
|
jenkins
|
subversion
|
An improper authorization vulnerability exists in Jenkins Subversion Plugin version 2.10.2 and earlier in SubversionStatus.java and SubversionRepositoryStatus.java that allows an attacker with networ…
|
CWE-863
Incorrect Authorization
|
CVE-2018-1000111
|
2024-11-21 12:39 |
2018-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248412
|
5.3 |
MEDIUM
Network
|
jenkins
|
git
|
An improper authorization vulnerability exists in Jenkins Git Plugin version 3.7.0 and earlier in GitStatus.java that allows an attacker with network access to obtain a list of nodes and users.
|
CWE-863
Incorrect Authorization
|
CVE-2018-1000110
|
2024-11-21 12:39 |
2018-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248413
|
4.3 |
MEDIUM
Network
|
jenkins
|
google-play-android-publisher
|
An improper authorization vulnerability exists in Jenkins Google Play Android Publisher Plugin version 1.6 and earlier in GooglePlayBuildStepDescriptor.java that allow an attacker to obtain credentia…
|
CWE-863
Incorrect Authorization
|
CVE-2018-1000109
|
2024-11-21 12:39 |
2018-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248414
|
6.1 |
MEDIUM
Network
|
jenkins
|
cppncss
|
A cross-site scripting vulnerability exists in Jenkins CppNCSS Plugin 1.1 and earlier in AbstractProjectAction/index.jelly that allow an attacker to craft links to Jenkins URLs that run arbitrary Jav…
|
CWE-79
Cross-site Scripting
|
CVE-2018-1000108
|
2024-11-21 12:39 |
2018-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248415
|
6.5 |
MEDIUM
Network
|
jenkins
|
job_and_node_ownership
|
An improper authorization vulnerability exists in Jenkins Job and Node Ownership Plugin 0.11.0 and earlier in OwnershipDescription.java, JobOwnerJobProperty.java, and OwnerNodeProperty.java that allo…
|
CWE-863
Incorrect Authorization
|
CVE-2018-1000107
|
2024-11-21 12:39 |
2018-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248416
|
5.4 |
MEDIUM
Network
|
jenkins
|
gerrit_trigger
|
An improper authorization vulnerability exists in Jenkins Gerrit Trigger Plugin 2.27.4 and earlier in GerritManagement.java, GerritServer.java, and PluginImpl.java that allows an attacker with Overal…
|
CWE-863
Incorrect Authorization
|
CVE-2018-1000106
|
2024-11-21 12:39 |
2018-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248417
|
4.3 |
MEDIUM
Network
|
jenkins
|
gerrit_trigger
|
An improper authorization vulnerability exists in Jenkins Gerrit Trigger Plugin 2.27.4 and earlier in GerritManagement.java, GerritServer.java, and PluginImpl.java that allows an attacker with Overal…
|
CWE-863
Incorrect Authorization
|
CVE-2018-1000105
|
2024-11-21 12:39 |
2018-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248418
|
7.8 |
HIGH
Local
|
jenkins
|
coverity
|
A plaintext storage of a password vulnerability exists in Jenkins Coverity Plugin 1.10.0 and earlier in CIMInstance.java that allows an attacker with local file system access or control of a Jenkins …
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2018-1000104
|
2024-11-21 12:39 |
2018-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248419
|
7.5 |
HIGH
Network
|
teluu debian
|
pjsip debian_linux
|
Teluu PJSIP version 2.7.1 and earlier contains a Access of Null/Uninitialized Pointer vulnerability in pjmedia SDP parsing that can result in Crash. This attack appear to be exploitable via Sending a…
|
CWE-824
Access of Uninitialized Pointer
|
CVE-2018-1000099
|
2024-11-21 12:39 |
2018-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248420
|
7.5 |
HIGH
Network
|
teluu debian
|
pjsip debian_linux
|
Teluu PJSIP version 2.7.1 and earlier contains a Integer Overflow vulnerability in pjmedia SDP parsing that can result in Crash. This attack appear to be exploitable via Sending a specially crafted m…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2018-1000098
|
2024-11-21 12:39 |
2018-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|