Launch Week Day 1: Announcing Security Design Review
HIGH 8.8 Maven

Jenkins allows Data Insertion and Execution of Code by those with Read and HTTP Access

GHSA-wr6p-j63r-xqhv · CVE-2012-4438

Published · Modified

Description

Jenkins main before 1.482 and LTS before 1.466.2 allows remote attackers with read access and HTTP access to Jenkins master to insert data and execute arbitrary code.

Ready to move

Start Securing

Free, no credit card | First findings in minutes