CVE-2015-1807

Description

Directory traversal vulnerability in Jenkins before 1.600 and LTS before 1.596.1 allows remote authenticated users with certain permissions to read arbitrary files via a symlink, related to building artifacts.

Risk Information

Base Score
6.5
MODERATE
Vector
AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
EPSS Score
Exploitation Probability
0.128

Associated Vulnerability

VulnerabilityOS Platform
Multiple vulnerabilities affected in Jenkins 1.599Windows
Multiple vulnerabilities affected in Jenkins 1.599 (For Ubuntu)Linux
Multiple vulnerabilities affected in Jenkins 1.599 (For Debian)Linux
Multiple vulnerabilities affected in Jenkins 1.599 (For Centos)Linux
Multiple vulnerabilities affected in Jenkins 1.599 (For RedHat)Linux
Multiple vulnerabilities affected in Jenkins 1.599 (For Suse)Linux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234