CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 4.7. It affects Jenkins. It may be remotely exploitable.
CVE
CVE-2017-17383
Severity
MEDIUM
CVSS
4.7
EPSS
1.15%
Jenkins
Original NVD Description
Jenkins through 2.93 allows remote authenticated administrators to conduct XSS attacks via a crafted tool name in a job configuration form, as demonstrated by the JDK tool in Jenkins core and the Ant tool in the Ant plugin, aka SECURITY-624.
Related CVEs
Other vulnerabilities affecting the same vendor(s)