Lucene search

K
osvGoogleOSV:CVE-2017-2598
HistoryMay 23, 2018 - 1:29 p.m.

CVE-2017-2598

2018-05-2313:29:00
Google
osv.dev
6

4.9 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

43.4%

Jenkins before versions 2.44, 2.32.2 uses AES ECB block cipher mode without IV for encrypting secrets which makes Jenkins and the stored secrets vulnerable to unnecessary risks (SECURITY-304).

4.9 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

43.4%