← KEV catalog
CISA known exploited vulnerability

CVE-2015-5317

Jenkins User Interface (UI) Information Disclosure Vulnerability

SOURCE FACT

Jenkins · Jenkins User Interface (UI)

Jenkins User Interface (UI) contains an information disclosure vulnerability that allows users to see the names of jobs and builds otherwise inaccessible to them on the "Fingerprints" pages.

Required action

Apply updates per vendor instructions.

CISA notes

https://www.jenkins.io/security/advisory/2015-11-11/; https://nvd.nist.gov/vuln/detail/CVE-2015-5317

View source evidence →

CHECK YOUR OUTSIDE-IN INVENTORY

Could this product be present?