<´╗┐img height="1" width="1" style="display:none;" alt="" src="https://dc.ads.linkedin.com/collect/?pid=112631&fmt=gif" />

CVE Database

CVE-2018-1999045

A improper authentication vulnerability exists in Jenkins 2.137 and earlier, 2.121.2 and earlier in SecurityRealm.java, TokenBasedRememberMeServices2.java that allows attackers with a valid cookie to remain logged in even if that feature is disabled.

Priority: --
CVSS v3: --
Publish Date: 2018-08-23
Related ID : --
CVSS v2: --
Modified Date: 2018-08-23

Find out more about CVE-2018-1999045 from the MITRE-CVE dictionary and NIST NVD

Products Affected

Login may be required to access defects or downloads.
Product Name Status Defect Fixed Downloads
Wind River Linux LTS Not Vulnerable -- -- --
Wind River Linux 9 Not Vulnerable -- -- --
Wind River Linux 8 Not Vulnerable -- -- --
Wind River Linux 7 Not Vulnerable -- -- --
Wind River Linux 6 Not Vulnerable -- -- --
Wind River Linux 5 Not Vulnerable -- -- --
VxWorks 7 Investigate -- -- --
VxWorks 6.9 Investigate -- -- --
VxWorks 6.8 Investigate -- -- --
VxWorks 6.7 Investigate -- -- --
VxWorks 6.6 Investigate -- -- --
VxWorks 6.4 Investigate -- -- --
VxWorks 5.5 Investigate -- -- --

Related Products

Status Related Products
Not VulnerableLinux 5 CGP, Linux 5 OVP, Linux 6 CGP, Linux 6 SCP, Linux 7 CGP, Linux 7 SCP, Linux 8, Linux 9, Linux LTS 17
Investigate
Vulnerable
Fixed

Comments

It doesn't impact WRLinux.