CVE-2022-34203: CSRF
Published Jun 22, 2022
·Updated
A cross-site request forgery (CSRF) vulnerability in Jenkins EasyQA Plugin 1.0 and earlier allows attackers to connect to an attacker-specified HTTP server.
Affected Software
1 affected component
Jenkins Easyqa Jenkins<=1.0
Event History
Jun 22, 2022
CVE Published
via MITRE·02:41 PM
Data Sourced
via MITRE·02:41 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-34203?
CVE-2022-34203 has been categorized with a medium severity rating due to its potential impact on the system's integrity.
2
How do I fix CVE-2022-34203?
To mitigate CVE-2022-34203, upgrade to a patched version of the Jenkins EasyQA Plugin that is newer than 1.0.
3
What kind of attack can exploit CVE-2022-34203?
CVE-2022-34203 can be exploited through a cross-site request forgery (CSRF) attack allowing the attacker to interact with an HTTP server.
4
What versions of the Jenkins EasyQA Plugin are vulnerable to CVE-2022-34203?
All versions of Jenkins EasyQA Plugin up to and including version 1.0 are vulnerable to CVE-2022-34203.
5
Is CVE-2022-34203 specific to certain versions of Jenkins?
No, CVE-2022-34203 specifically affects the Jenkins EasyQA Plugin and is not dependent on the Jenkins core versions.