CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 6.5. It affects Jenkins.
CVE
CVE-2015-5298
Severity
MEDIUM
CVSS
6.5
EPSS
0.66%
Jenkins
Original NVD Description
The Google Login Plugin (versions 1.0 and 1.1) allows malicious anonymous users to authenticate successfully against Jenkins instances that are supposed to be locked down to a particular Google Apps domain through client-side request modification.
Related CVEs
Other vulnerabilities affecting the same vendor(s)