#VU16572 Improper input validation in Jenkins - CVE-2018-1000864
Published: December 17, 2018 / Updated: December 18, 2018
Jenkins
Jenkins
Description
The vulnerability allows a remote authenticated attacker to cause DoS condition.
The vulnerability exists due to improper form validation for cron expressions. A remote attacker can send a specially crafted request that submits malicious input and block request handling threads, resulting in a DoS condition.