CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.3. It affects Jenkins.
CVE
CVE-2017-1000089
Severity
MEDIUM
CVSS
5.3
EPSS
0.96%
Jenkins
Original NVD Description
Builds in Jenkins are associated with an authentication that controls the permissions that the build has to interact with other elements in Jenkins. The Pipeline: Build Step Plugin did not check the build authentication it was running as and allowed triggering any other project in Jenkins.
Related CVEs
Other vulnerabilities affecting the same vendor(s)