CVE Vulnerabilities

CVE-2013-6373

Published: Nov 25, 2013 | Modified: Jul 15, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

The Exclusion plugin before 0.9 for Jenkins does not properly prevent access to resource locks, which allows remote authenticated users to list and release resources via unspecified vectors.

Affected Software

Name Vendor Start Version End Version
Exclusion Jenkins-ci * 0.8 (including)
Exclusion Jenkins-ci 0.6 (including) 0.6 (including)
Exclusion Jenkins-ci 0.7 (including) 0.7 (including)

References