CVE-2021-21621
CVE-2021-21621
Vexday Risk Score
3Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS —EPSS 1.2%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
24 feb 2021Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
Jenkins Support Core Plugin 2.72 and earlier provides the serialized user authentication as part of the "About user (basic authentication details only)" information, which can include the session ID of the user creating the support bundle in some configurations.
Productos afectados
Jenkins project · Jenkins Support Core Plugin¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →