Skip to content
Noroxi

CloudBees records

10 published records for vendor cloudbees.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
90%
Median publish → KEV
No record has entered KEV

All records

10 records
  • CloudBees Jenkins Operations Center 2.150.2.3, when an expired trial license exists, allows Cleartext Password Storage and Retrieval via the

    CriticalCVSS 9.8No exploitEPSS 2%

    cloudbees · jenkins operations centerApr 19, 2019

  • CVE-2012-0785
    31Monitor

    Hash collision attack vulnerability in Jenkins before 1.447, Jenkins LTS before 1.424.2, and Jenkins Enterprise by CloudBees 1.424.x before

    HighCVSS 7.5No exploitEPSS 3%

    cloudbees · jenkinsFeb 24, 2020

  • CVE-2013-2034
    27Monitor

    Multiple cross-site request forgery (CSRF) vulnerabilities in Jenkins before 1.514, LTS before 1.509.1, and Enterprise 1.466.x before 1.466.

    MediumCVSS 6.8No exploitEPSS 2%

    cloudbees · jenkinsMay 14, 2014

  • CVE-2012-6073
    24Monitor

    Open redirect vulnerability in Jenkins before 1.491, Jenkins LTS before 1.480.1, and Jenkins Enterprise 1.424.x before 1.424.6.13, 1.447.x b

    MediumCVSS 5.8No exploitEPSS 2%

    jenkins · jenkinsFeb 24, 2013

  • CVE-2012-6072
    18Monitor

    CRLF injection vulnerability in Jenkins before 1.491, Jenkins LTS before 1.480.1, and Jenkins Enterprise 1.424.x before 1.424.6.13, 1.447.x

    MediumCVSS 4.3No exploitEPSS 2%

    jenkins · jenkinsFeb 24, 2013

  • CVE-2012-0324
    17Monitor

    Cross-site scripting (XSS) vulnerability in Jenkins before 1.454, Jenkins LTS before 1.424.5, and Jenkins Enterprise 1.400.x before 1.400.0.

    MediumCVSS 4.3No exploitEPSS 1%

    jenkins · jenkinsMar 9, 2012

  • CVE-2012-0325
    17Monitor

    Cross-site scripting (XSS) vulnerability in Jenkins before 1.454, Jenkins LTS before 1.424.5, and Jenkins Enterprise 1.400.x before 1.400.0.

    MediumCVSS 4.3No exploitEPSS 1%

    jenkins · jenkinsMar 9, 2012

  • CVE-2012-6074
    14Monitor

    Cross-site scripting (XSS) vulnerability in Jenkins before 1.491, Jenkins LTS before 1.480.1, and Jenkins Enterprise 1.424.x before 1.424.6.

    LowCVSS 3.5No exploitEPSS 1%

    jenkins · jenkinsFeb 24, 2013

  • CVE-2013-0158
    11Monitor

    Unspecified vulnerability in Jenkins before 1.498, Jenkins LTS before 1.480.2, and Jenkins Enterprise 1.447.x before 1.447.6.1 and 1.466.x b

    LowCVSS 2.6No exploitEPSS 2%

    jenkins · jenkinsFeb 24, 2013

  • Cross-site scripting (XSS) vulnerability in Jenkins before 1.514, LTS before 1.509.1, and Enterprise 1.466.x before 1.466.14.1 and 1.480.x b

    LowCVSS 2.1No exploitEPSS 2%

    jenkins · jenkinsApr 10, 2014