CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 6.5. It affects Jenkins.
CVE
CVE-2022-45383
Severity
MEDIUM
CVSS
6.5
EPSS
0.65%
Jenkins
Original NVD Description
An incorrect permission check in Jenkins Support Core Plugin 1206.v14049fa_b_d860 and earlier allows attackers with Support/DownloadBundle permission to download a previously created support bundle containing information limited to users with Overall/Administer permission.
Related CVEs
Other vulnerabilities affecting the same vendor(s)