Vulnerabilities > Jenkins > Jenkins > 1.562

DATE CVE VULNERABILITY TITLE RISK
2015-10-16 CVE-2015-1807 Path Traversal vulnerability in Jenkins
Directory traversal vulnerability in Jenkins before 1.600 and LTS before 1.596.1 allows remote authenticated users with certain permissions to read arbitrary files via a symlink, related to building artifacts.
3.5
2015-10-16 CVE-2015-1806 Permissions, Privileges, and Access Controls vulnerability in Jenkins
The combination filter Groovy script in Jenkins before 1.600 and LTS before 1.596.1 allows remote authenticated users with job configuration permission to gain privileges and execute arbitrary code on the master via unspecified vectors.
network
low complexity
jenkins redhat CWE-264
6.5
2014-10-16 CVE-2014-3666 Code Injection vulnerability in multiple products
Jenkins before 1.583 and LTS before 1.565.3 allows remote attackers to execute arbitrary code via a crafted packet to the CLI channel.
network
low complexity
redhat jenkins CWE-94
7.5