메뉴 건너뛰기

GREATUSER

cve

CVE-2018-1000014

관리자 2018.01.25 04:00 조회 수 : 11

Jenkins Translation Assistance Plugin 1.15 and earlier did not require form submissions to be submitted via POST, resulting in a CSRF vulnerability allowing attackers to override localized strings displayed to all users on the current Jenkins instance if the victim is a Jenkins administrator.


원문출처 : https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2018-1000014
위로