![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
Test ID: | 1.3.6.1.4.1.25623.1.0.809025 |
Category: | Web application abuses |
Title: | Jenkins 1.626 Multiple Vulnerabilities (Feb 2017) |
Summary: | Jenkins is prone to multiple vulnerabilities.;; This VT has been deprecated and replaced by the VTs 'Jenkins Multiple Vulnerabilities - Feb17 (Linux)'; (OID: 1.3.6.1.4.1.25623.1.0.108095) and 'Jenkins Multiple Vulnerabilities - Feb17 (Windows)'; (OID: 1.3.6.1.4.1.25623.1.0.108096). |
Description: | Summary: Jenkins is prone to multiple vulnerabilities. This VT has been deprecated and replaced by the VTs 'Jenkins Multiple Vulnerabilities - Feb17 (Linux)' (OID: 1.3.6.1.4.1.25623.1.0.108095) and 'Jenkins Multiple Vulnerabilities - Feb17 (Windows)' (OID: 1.3.6.1.4.1.25623.1.0.108096). Vulnerability Insight: Multiple flaws exist due to an improper session management for most request. Vulnerability Impact: Successful exploitation will allow remote attackers to hijack the authentication of users for most request and to change specific settings or even execute code on the underlying OS. Affected Software/OS: Jenkins version 1.626. Solution: Updates are available to fix this issue. CVSS Score: 6.8 CVSS Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P |
Copyright | Copyright (C) 2016 Greenbone AG |
This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |