CSRF Vulnerability in Jenkins Allows Authentication Hijacking

CSRF Vulnerability in Jenkins Allows Authentication Hijacking

CVE-2015-7537 · MEDIUM Severity

AV:N/AC:M/AU:N/C:P/I:P/A:P

Cross-site request forgery (CSRF) vulnerability in Jenkins before 1.640 and LTS before 1.625.2 allows remote attackers to hijack the authentication of administrators for requests that have unspecified impact via vectors related to the HTTP GET method.

Learn more about our Web Application Penetration Testing UK.