Lucene search

K
nvd[email protected]NVD:CVE-2012-6073
HistoryFeb 24, 2013 - 10:55 p.m.

CVE-2012-6073

2013-02-2422:55:01
CWE-20
web.nvd.nist.gov
1

5.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:P/A:N

6.5 Medium

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

71.8%

Open redirect vulnerability in Jenkins before 1.491, Jenkins LTS before 1.480.1, and Jenkins Enterprise 1.424.x before 1.424.6.13, 1.447.x before 1.447.4.1, and 1.466.x before 1.466.10.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.

Affected configurations

NVD
Node
cloudbeesjenkinsMatch1.447.1.1-enterprise
OR
cloudbeesjenkinsMatch1.447.2.2-enterprise
OR
cloudbeesjenkinsMatch1.447.3.1-enterprise
Node
cloudbeesjenkinsMatch1.400-lts
OR
cloudbeesjenkinsMatch1.424-lts
OR
cloudbeesjenkinsMatch1.447-lts
OR
jenkinsjenkinsRange1.466.2
OR
jenkinsjenkinsMatch1.409.1
OR
jenkinsjenkinsMatch1.409.2
OR
jenkinsjenkinsMatch1.409.3
OR
jenkinsjenkinsMatch1.424.1
OR
jenkinsjenkinsMatch1.424.2
OR
jenkinsjenkinsMatch1.424.3
OR
jenkinsjenkinsMatch1.424.4
OR
jenkinsjenkinsMatch1.424.5
OR
jenkinsjenkinsMatch1.424.6
OR
jenkinsjenkinsMatch1.447.1
OR
jenkinsjenkinsMatch1.447.2
OR
jenkinsjenkinsMatch1.466.1
Node
cloudbeesjenkinsMatch1.424.0.2-enterprise
OR
cloudbeesjenkinsMatch1.424.0.4-enterprise
OR
cloudbeesjenkinsMatch1.424.1.1-enterprise
OR
cloudbeesjenkinsMatch1.424.2.1-enterprise
OR
cloudbeesjenkinsMatch1.424.4.1-enterprise
OR
cloudbeesjenkinsMatch1.424.5.1-enterprise
OR
cloudbeesjenkinsMatch1.424.6.1-enterprise
OR
cloudbeesjenkinsMatch1.424.6.11-enterprise
Node
cloudbeesjenkinsRange1.480.3.1
OR
jenkinsjenkinsMatch1.400
OR
jenkinsjenkinsMatch1.401
OR
jenkinsjenkinsMatch1.402
OR
jenkinsjenkinsMatch1.403
OR
jenkinsjenkinsMatch1.404
OR
jenkinsjenkinsMatch1.405
OR
jenkinsjenkinsMatch1.406
OR
jenkinsjenkinsMatch1.407
OR
jenkinsjenkinsMatch1.408
OR
jenkinsjenkinsMatch1.409
OR
jenkinsjenkinsMatch1.410
OR
jenkinsjenkinsMatch1.411
OR
jenkinsjenkinsMatch1.412
OR
jenkinsjenkinsMatch1.413
OR
jenkinsjenkinsMatch1.414
OR
jenkinsjenkinsMatch1.415
OR
jenkinsjenkinsMatch1.416
OR
jenkinsjenkinsMatch1.417
OR
jenkinsjenkinsMatch1.418
OR
jenkinsjenkinsMatch1.419
OR
jenkinsjenkinsMatch1.420
OR
jenkinsjenkinsMatch1.421
OR
jenkinsjenkinsMatch1.422
OR
jenkinsjenkinsMatch1.423
OR
jenkinsjenkinsMatch1.424
OR
jenkinsjenkinsMatch1.425
OR
jenkinsjenkinsMatch1.426
OR
jenkinsjenkinsMatch1.427
OR
jenkinsjenkinsMatch1.428
OR
jenkinsjenkinsMatch1.429
OR
jenkinsjenkinsMatch1.430
OR
jenkinsjenkinsMatch1.431
OR
jenkinsjenkinsMatch1.432
OR
jenkinsjenkinsMatch1.433
OR
jenkinsjenkinsMatch1.434
OR
jenkinsjenkinsMatch1.435
OR
jenkinsjenkinsMatch1.436
OR
jenkinsjenkinsMatch1.437
Node
cloudbeesjenkinsMatch1.466.1.2-enterprise
OR
cloudbeesjenkinsMatch1.466.2.1-enterprise

5.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:P/A:N

6.5 Medium

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

71.8%