CVE-2017-2599
Published
CVSS v3
5.4
MEDIUM
CVSS v2
5.5
MEDIUM
Affected
1
PROJECT
Description
Jenkins before versions 2.44 and 2.32.2 is vulnerable to an insufficient permission check. This allows users with permissions to create new items (e.g. jobs) to overwrite existing items they don't have access to (SECURITY-321).