CVE Database
/

CVE-2015-5298

Back to search

CVE-2015-5298

Published: Jul 7, 2022

Modified: Aug 6, 2024

PUBLISHED

Description

The Google Login Plugin (versions 1.0 and 1.1) allows malicious anonymous users to authenticate successfully against Jenkins instances that are supposed to be locked down to a particular Google Apps domain through client-side request modification.

VendorProductVersions

n/a

Jenkins Google Login Plugin

affected
Jenkins Google Login Plugin 1.0 and 1.1

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now