Cross-site scripting (XSS) vulnerability in Jenkins before 1.583 and LTS before 1.565.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
References
Link | Resource |
---|---|
https://access.redhat.com/errata/RHSA-2016:0070 | Third Party Advisory |
https://bugzilla.redhat.com/show_bug.cgi?id=1147766 | Issue Tracking Third Party Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/96975 | Third Party Advisory VDB Entry |
https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2014-10-01 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: redhat
Published: 2014-10-15T14:00:00
Updated: 2017-08-28T12:57:01
Reserved: 2014-05-14T00:00:00
Link: CVE-2014-3681
JSON object: View
NVD Information
Status : Modified
Published: 2014-10-15T14:55:07.760
Modified: 2023-02-13T00:41:52.810
Link: CVE-2014-3681
JSON object: View
Redhat Information
No data.
CWE