AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2017-1000391

HIGH · CVSS 7.3 EPSS 1.50%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-01-26 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2017-1000391
Severity
HIGH
CVSS
7.3
EPSS
1.50%
Jenkins

Original NVD Description

Jenkins versions 2.88 and earlier and 2.73.2 and earlier stores metadata related to 'people', which encompasses actual user accounts, as well as users appearing in SCM, in directories corresponding to the user ID on disk. These directories used the user ID for their name without additional escaping, potentially resulting in problems like overwriting of unrelated configuration files.