The Exclusion plugin before 0.9 for Jenkins does not properly prevent access to resource locks, which allows remote authenticated users to list and release resources via unspecified vectors.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: redhat
Published: 2013-11-25T19:00:00
Updated: 2016-06-09T15:57:01
Reserved: 2013-11-04T00:00:00
Link: CVE-2013-6373
JSON object: View
NVD Information
Status : Analyzed
Published: 2013-11-25T19:55:03.340
Modified: 2016-07-15T14:59:50.020
Link: CVE-2013-6373
JSON object: View
Redhat Information
No data.
CWE