CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 8.8. It affects Jenkins.
CVE
CVE-2023-41939
Severity
HIGH
CVSS
8.8
EPSS
0.55%
Jenkins
Original NVD Description
Jenkins SSH2 Easy Plugin 1.4 and earlier does not verify that permissions configured to be granted are enabled, potentially allowing users formerly granted (typically optional permissions, like Overall/Manage) to access functionality they're no longer entitled to.
Related CVEs
Other vulnerabilities affecting the same vendor(s)