Description
An improper authorization vulnerability exists in Jenkins 2.158 and earlier, LTS 2.150.1 and earlier in core/src/main/java/hudson/security/TokenBasedRememberMeServices2.java that allows attackers with Overall/RunScripts permission to craft Remember Me cookies that would never expire, allowing e.g. to persist access to temporarily compromised user accounts.
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:HExploitability: 1.2 | Impact: 5.9Attack Vector: Network
Complexity: Low
Privileges: High
User Interaction: None
Scope: Unchanged
Confidentiality: High
Integrity: High
Availability: High
Affected Packages2 packages
Also affects: Openshift Container Platform 3.11
🔴Vulnerability Details
3OSVImproper Authorization in Jenkins Core↗2022-05-13 ▶ GHSAImproper Authorization in Jenkins Core↗2022-05-13 ▶ CVEListCVE-2019-1003003: An improper authorization vulnerability exists in Jenkins 2↗2019-01-22 ▶ 📋Vendor Advisories
2Red Hatjenkins: cookie crafted using Jenkins script console allows unauthorised access to Jenkins instance↗2019-01-16 ▶ JenkinsJenkins Security Advisory 2019-01-16↗2019-01-16 ▶ 💬Community
3BugzillaCVE-2019-1003003 jenkins: cookie crafted using Jenkins script console allows unauthorised access to Jenkins instance [fedora-28]↗2019-01-22 ▶ BugzillaCVE-2019-1003003 CVE-2019-1003004 jenkins: various flaws [fedora-all]↗2019-01-22 ▶ BugzillaCVE-2019-1003003 jenkins: cookie crafted using Jenkins script console allows unauthorised access to Jenkins instance↗2019-01-22 ▶