Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-32999
HistoryMay 16, 2023 - 5:15 p.m.

Design/Logic Flaw

2023-05-1617:15:00
PRIOn knowledge base
www.prio-n.com
5
design flaw
logic flaw
jenkins appspider
permission check
vulnerability
http post
json payload
credentials

4.4 Medium

AI Score

Confidence

High

0.0005 Low

EPSS

Percentile

17.5%

A missing permission check in Jenkins AppSpider Plugin 1.0.15 and earlier allows attackers with Overall/Read permission to connect to an attacker-specified URL and send an HTTP POST request with a JSON payload consisting of attacker-specified credentials.

CPENameOperatorVersion
appspiderle1.0.15

4.4 Medium

AI Score

Confidence

High

0.0005 Low

EPSS

Percentile

17.5%

Related for PRION:CVE-2023-32999