CVE-2015-5317
The Fingerprints pages in Jenkins before 1.638 and LTS before 1.625.2 might allow remote attackers to obtain sensitive job and build name information via a direct request.
- Affected products
- Jenkins
- Jenkins
- ≤ 1.637
- CVSS 3.1
- 7.5 HIGH
- EPSS
- 22.4% (98th percentile)
- Weakness
- CWE-200
- NVD status
- Analyzed
- Published
- 2015-11-25
CVE-2015-5317 at NVD
1 known exploit for CVE-2015-5317
Proof-of-concept code and exploit modules indexed by Sploitus