AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2018-1999038

MEDIUM · CVSS 4.2 EPSS 0.48%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-08-01 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2018-1999038
Severity
MEDIUM
CVSS
4.2
EPSS
0.48%
Jenkins Java

Original NVD Description

A confused deputy vulnerability exists in Jenkins Publisher Over CIFS Plugin 0.10 and earlier in CifsPublisherPluginDescriptor.java that allows attackers to have Jenkins connect to an attacker specified CIFS server with attacker specified credentials.