Mission and Overview
NVD is the U.S. government repository of standards based vulnerability management data. This data enables automation of vulnerability management, security measurement, and compliance (e.g. FISMA).
Resource Status
NVD contains:
CVE Vulnerabilities
56428
Checklists
221
US-CERT Alerts
246
US-CERT Vuln Notes
2721
OVAL Queries
8140
CPE Names
73307

Last updated: Thu May 23 16:53:15 EDT 2013

CVE Publication rate: 12.5

Email List

NVD provides four mailing lists to the public. For information and subscription instructions please visit NVD Mailing Lists

Workload Index

Vulnerability Workload Index: 6.48

About Us
NVD is a product of the NIST Computer Security Division and is sponsored by the Department of Homeland Security's National Cyber Security Division. It supports the U.S. government multi-agency (OSD, DHS, NSA, DISA, and NIST) Information Security Automation Program. It is the U.S. government content repository for the Security Content Automation Protocol (SCAP).

National Cyber Awareness System

Vulnerability Summary for CVE-2013-0330

Original release date:03/19/2013
Last revised:03/21/2013
Source: US-CERT/NIST

Overview

Unspecified vulnerability in CloudBees Jenkins before 1.502 and LTS before 1.480.3 allows remote authenticated users with write access to build arbitrary jobs via unknown attack vectors.

Impact

CVSS Severity (version 2.0):
CVSS v2 Base Score:4.0 (MEDIUM) (AV:N/AC:L/Au:S/C:N/I:P/A:N) (legend)
Impact Subscore: 2.9
Exploitability Subscore: 8.0
CVSS Version 2 Metrics:
Access Vector: Network exploitable
Access Complexity: Low
Authentication: Required to exploit
Impact Type:Allows unauthorized modification

References to Advisories, Solutions, and Tools

By selecting these links, you will be leaving NIST webspace. We have provided these links to other web sites because they may have information that would be of interest to you. No inferences should be drawn on account of other sites being referenced, or not, from this page. There may be other web sites that are more appropriate for your purpose. NIST does not necessarily endorse the views expressed, or concur with the facts presented on these sites. Further, NIST does not endorse any commercial products that may be mentioned on these sites. Please address comments about this page to nvd@nist.gov.

External Source: CONFIRM
Name: https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2013-02-16
External Source: MISC
Name: https://bugzilla.redhat.com/show_bug.cgi?id=914878
External Source: BID
Name: 57994
External Source: MLIST
Name: [oss-security] 20130220 Re: Jenkins CVE request for Jenkins Security Advisory 2013-02-16
External Source: CONFIRM
Name: http://www.cloudbees.com/jenkins-advisory/jenkins-security-advisory-2013-02-16.cb
Type: Advisory
External Source: REDHAT
Name: RHSA-2013:0638

Vulnerable software and versions

Nav control imageConfiguration 1
spacerNav control imageOR
spacerspacerNav control image* cpe:/a:cloudbees:jenkins1.500 and previous versions
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.301
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.302
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.303
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.308
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.309
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.310
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.311
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.304
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.305
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.306
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.400:-:lts
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.307
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.334
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.335
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.332
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.333
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.330
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.331
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.328
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.329
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.342
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.343
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.340
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.341
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.338
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.339
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.336
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.337
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.319
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.318
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.317
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.316
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.315
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.314
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.313
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.312
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.327
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.326
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.325
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.324
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.323
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.322
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.321
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.320
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.360
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.361
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.362
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.363
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.364
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.365
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.366
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.367
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.368
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.369
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.370
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.371
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.372
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.373
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.374
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.375
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.345
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.344
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.347
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.346
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.349
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.348
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.351
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.350
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.353
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.352
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.355
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.354
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.357
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.356
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.359
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.358
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.393
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.396
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.397
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.394
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.395
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.400
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.401
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.398
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.399
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.379
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.378
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.377
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.376
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.383
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.382
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.380
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.388
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.387
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.386
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.384
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.392
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.391
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.390
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.389
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.447.2.2:-:enterprise
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.409.2::lts
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.447.3.1:-:enterprise
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.424.6.11:-:enterprise
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.447.1.1:-:enterprise
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.424.5.1:-:enterprise
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.424.6.1:-:enterprise
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.424.2.1:-:enterprise
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.424.4.1:-:enterprise
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.409.1::lts
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.424.0.4:-:enterprise
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.424.1.1:-:enterprise
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.409.1:-:lts
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.424.0.2:-:enterprise
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.409.3:-:lts
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.409.2:-:lts
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.424:-:lts
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.466.2.1:-:enterprise
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.466.1.2:-:enterprise
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.404
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.402
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.403
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.424.6:-:lts
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.447.1:-:lts
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.424.4:-:lts
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.424.5:-:lts
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.424.2:-:lts
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.424.3:-:lts
spacerspacerNav control image* cpe:/a:cloudbees:jenkins1.381
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.447:-:lts
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.424.1:-:lts
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.480.3.1
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.447.2:-:lts
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.466.1:-:lts
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.431
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.430
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.433
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.432
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.427
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.426
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.429
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.428
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.423
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.422
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.425
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.424
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.419
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.418
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.421
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.420
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.414
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.415
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.416
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.417
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.410
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.411
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.412
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.413
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.406
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.407
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.408
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.409
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.405
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.436
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.437
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.434
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.435
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.466.2:-:lts
spacerspacerNav control image* cpe:/a:cloudbees:jenkins:1.480.2 and previous versions
* Denotes Vulnerable Software

Technical Details

Vulnerability Type (View All)