CVE-2014-2068

EPSS 0.08%

Jenkins allows attackers to obtain sensitive information

Published: 5/17/2022Modified: 12/3/2024

Description

The doIndex function in hudson/util/RemotingDiagnostics.java in CloudBees Jenkins before 1.551 and LTS before 1.532.2 allows remote authenticated users with the ADMINISTER permission to obtain sensitive information via vectors related to heapDump.

Affected packages (1)

References (5)