CVE-2017-1000243

Jenkins Favorite Plugin 2.1.4 and older does not perform permission checks when changing favorite status, allowing any user to set any other user's favorites
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:jenkins:favorite_plugin:*:*:*:*:*:jenkins:*:*

Information

Published : 2017-11-01 06:29

Updated : 2020-08-24 10:37


NVD link : CVE-2017-1000243

Mitre link : CVE-2017-1000243


JSON object : View

CWE
CWE-862

Missing Authorization

Advertisement

dedicated server usa

Products Affected

jenkins

  • favorite_plugin