PT-2017-10799 · Docker+1 · Docker Commons Plugin+1

Karl Shultz

·

Publicado

2017-10-04

·

Atualizado

2022-05-17

·

CVE-2017-1000094

CVSS v3.1

6.5

Média

VetorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Docker Commons Plugin (affected versions not specified)
Description The Docker Commons Plugin has a functionality that provides a list of applicable credential IDs for users to select when configuring a job to authenticate with a Docker Registry. However, this functionality did not check permissions, allowing any user with Overall/Read permission to obtain a list of valid credential IDs. These IDs could potentially be used as part of an attack to capture credentials using another vulnerability.
Recommendations To resolve the issue, ensure that the permission to enumerate credentials IDs in the Docker Commons Plugin requires Extended Read permission (when enabled) or Configure permission to the job in whose context credentials are being accessed. If no job context exists, require Overall/Administer permission. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Information Disclosure

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2017-1000094
GHSA-69CJ-G7MW-MH72

Produtos afetados

Docker Commons Plugin
Jenkins