AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2017-17383

MEDIUM · CVSS 4.7 EPSS 1.15%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2017-12-06 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 4.7. It affects Jenkins. It may be remotely exploitable.

CVE
CVE-2017-17383
Severity
MEDIUM
CVSS
4.7
EPSS
1.15%
Jenkins

Original NVD Description

Jenkins through 2.93 allows remote authenticated administrators to conduct XSS attacks via a crafted tool name in a job configuration form, as demonstrated by the JDK tool in Jenkins core and the Ant tool in the Ant plugin, aka SECURITY-624.

Related CVEs

Other vulnerabilities affecting the same vendor(s)