Jenkins Improper Authentication Vulnerability - CVE-2014-2066 - Vulnerability Database

Jenkins Improper Authentication Vulnerability - CVE-2014-2066

Medium
Reference: CVE-2014-2066
Title: Jenkins Improper Authentication Vulnerability
Overview:

Session fixation vulnerability in Jenkins before 1.551 and LTS before 1.532.2 allows remote attackers to hijack web sessions via vectors involving the quotoverridequot of Jenkins cookies.