Junglewise Threat Intelligence

CVE-2018-1000197: Jenkins Black Duck Hub Plugin allowed any user with Overall/Read to read and write its configuration

CVE-2018-1000197 · Severity: low · CVSS 3 · Published 2022-05-13

Technologies: com.blackducksoftware.integration:blackduck-hub (Maven). Vendors: Maven.

Executive brief

Jenkins Black Duck Hub Plugin allowed any user with Overall/Read to read and write its configuration

Affected products

  • Maven com.blackducksoftware.integration:blackduck-hub

Related threats