FreeBSD : jenkins -- multiple vulnerabilities (8e9c3f5a-715b-4336-8d05-19babef55e9e)

high Nessus Plugin ID 123981

Language:

Synopsis

The remote FreeBSD host is missing one or more security-related updates.

Description

Jenkins Security Advisory : Description(Medium) SECURITY-1289 Jenkins accepted cached legacy CLI authentication (Medium) SECURITY-1327 XSS vulnerability in form validation button

Solution

Update the affected packages.

See Also

https://jenkins.io/security/advisory/2019-04-10/

http://www.nessus.org/u?f72ed3fc

Plugin Details

Severity: High

ID: 123981

File Name: freebsd_pkg_8e9c3f5a715b43368d0519babef55e9e.nasl

Version: 1.1

Type: local

Published: 4/11/2019

Updated: 4/11/2019

Supported Sensors: Nessus

Vulnerability Information

CPE: p-cpe:/a:freebsd:freebsd:jenkins, p-cpe:/a:freebsd:freebsd:jenkins-lts, cpe:/o:freebsd:freebsd

Required KB Items: Host/local_checks_enabled, Host/FreeBSD/release, Host/FreeBSD/pkg_info

Patch Publication Date: 4/10/2019

Vulnerability Publication Date: 4/10/2019