4.3

CVE-2012-0325

Cross-site scripting (XSS) vulnerability in Jenkins before 1.454, Jenkins LTS before 1.424.5, and Jenkins Enterprise 1.400.x before 1.400.0.13 and 1.424.x before 1.424.5.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2012-0324.

Data is provided by the National Vulnerability Database (NVD)
CloudbeesJenkins Version <= 1.453
JenkinsJenkins Version1.301
JenkinsJenkins Version1.302
JenkinsJenkins Version1.303
JenkinsJenkins Version1.304
JenkinsJenkins Version1.305
JenkinsJenkins Version1.306
JenkinsJenkins Version1.307
JenkinsJenkins Version1.308
JenkinsJenkins Version1.309
JenkinsJenkins Version1.310
JenkinsJenkins Version1.311
JenkinsJenkins Version1.312
JenkinsJenkins Version1.313
JenkinsJenkins Version1.314
JenkinsJenkins Version1.315
JenkinsJenkins Version1.316
JenkinsJenkins Version1.317
JenkinsJenkins Version1.318
JenkinsJenkins Version1.319
JenkinsJenkins Version1.320
JenkinsJenkins Version1.321
JenkinsJenkins Version1.322
JenkinsJenkins Version1.323
JenkinsJenkins Version1.324
JenkinsJenkins Version1.325
JenkinsJenkins Version1.326
JenkinsJenkins Version1.327
JenkinsJenkins Version1.328
JenkinsJenkins Version1.329
JenkinsJenkins Version1.330
JenkinsJenkins Version1.331
JenkinsJenkins Version1.332
JenkinsJenkins Version1.333
JenkinsJenkins Version1.334
JenkinsJenkins Version1.335
JenkinsJenkins Version1.336
JenkinsJenkins Version1.337
JenkinsJenkins Version1.338
JenkinsJenkins Version1.339
JenkinsJenkins Version1.340
JenkinsJenkins Version1.341
JenkinsJenkins Version1.342
JenkinsJenkins Version1.343
JenkinsJenkins Version1.344
JenkinsJenkins Version1.345
JenkinsJenkins Version1.346
JenkinsJenkins Version1.347
JenkinsJenkins Version1.348
JenkinsJenkins Version1.349
JenkinsJenkins Version1.350
JenkinsJenkins Version1.351
JenkinsJenkins Version1.352
JenkinsJenkins Version1.353
JenkinsJenkins Version1.354
JenkinsJenkins Version1.355
JenkinsJenkins Version1.356
JenkinsJenkins Version1.357
JenkinsJenkins Version1.358
JenkinsJenkins Version1.359
JenkinsJenkins Version1.360
JenkinsJenkins Version1.361
JenkinsJenkins Version1.362
JenkinsJenkins Version1.363
JenkinsJenkins Version1.364
JenkinsJenkins Version1.365
JenkinsJenkins Version1.366
JenkinsJenkins Version1.367
JenkinsJenkins Version1.368
JenkinsJenkins Version1.369
JenkinsJenkins Version1.370
JenkinsJenkins Version1.371
JenkinsJenkins Version1.372
JenkinsJenkins Version1.373
JenkinsJenkins Version1.374
JenkinsJenkins Version1.375
JenkinsJenkins Version1.376
JenkinsJenkins Version1.377
JenkinsJenkins Version1.378
JenkinsJenkins Version1.379
JenkinsJenkins Version1.380
JenkinsJenkins Version1.382
JenkinsJenkins Version1.383
JenkinsJenkins Version1.384
JenkinsJenkins Version1.386
JenkinsJenkins Version1.387
JenkinsJenkins Version1.388
JenkinsJenkins Version1.389
JenkinsJenkins Version1.390
JenkinsJenkins Version1.391
JenkinsJenkins Version1.392
JenkinsJenkins Version1.393
JenkinsJenkins Version1.394
JenkinsJenkins Version1.395
JenkinsJenkins Version1.396
JenkinsJenkins Version1.397
JenkinsJenkins Version1.398
JenkinsJenkins Version1.399
JenkinsJenkins Version1.400
JenkinsJenkins Version1.401
JenkinsJenkins Version1.402
JenkinsJenkins Version1.403
JenkinsJenkins Version1.404
JenkinsJenkins Version1.405
JenkinsJenkins Version1.406
JenkinsJenkins Version1.407
JenkinsJenkins Version1.408
JenkinsJenkins Version1.409
JenkinsJenkins Version1.409.1
JenkinsJenkins Version1.409.2
JenkinsJenkins Version1.410
JenkinsJenkins Version1.411
JenkinsJenkins Version1.412
JenkinsJenkins Version1.413
JenkinsJenkins Version1.414
JenkinsJenkins Version1.415
JenkinsJenkins Version1.416
JenkinsJenkins Version1.417
JenkinsJenkins Version1.418
JenkinsJenkins Version1.419
JenkinsJenkins Version1.420
JenkinsJenkins Version1.421
JenkinsJenkins Version1.422
JenkinsJenkins Version1.423
JenkinsJenkins Version1.424
JenkinsJenkins Version1.425
JenkinsJenkins Version1.426
JenkinsJenkins Version1.427
JenkinsJenkins Version1.428
JenkinsJenkins Version1.429
JenkinsJenkins Version1.430
JenkinsJenkins Version1.431
JenkinsJenkins Version1.432
JenkinsJenkins Version1.433
JenkinsJenkins Version1.434
JenkinsJenkins Version1.435
JenkinsJenkins Version1.436
JenkinsJenkins Version1.437
CloudbeesJenkins Version1.400 Editionenterprise
CloudbeesJenkins Version1.400.0.12 Editionenterprise
CloudbeesJenkins Version1.424 Editionenterprise
CloudbeesJenkins Version1.424.5 Editionenterprise
CloudbeesJenkins Version1.400 Editionlts
CloudbeesJenkins Version1.400.0.12 Editionlts
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.21% 0.399
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:N/I:P/A:N
CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.