Mend.io Vulnerability Database
The largest open source vulnerability database
What is a Vulnerability ID?
New vulnerability? Tell us about it!
CVE-2013-7330
Published:October 17, 2014
Updated:May 17, 2026
Jenkins before 1.502 allows remote authenticated users to configure an otherwise restricted project via vectors related to post-build actions.
Affected Packages
org.jenkins-ci.main:jenkins-core (JAVA):
Affected version(s) >=1.396 <1.480.3
Fix Suggestion:
Update to version 1.480.3
org.jenkins-ci.main:jenkins-core (JAVA):
Affected version(s) >=1.481 <1.502
Fix Suggestion:
Update to version 1.502
Do you need more information?
Contact Us
CVSS v3
Base Score:
4.3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
NONE
Integrity
LOW
Availability
NONE
CVSS v2
Base Score:
4
Access Vector
NETWORK
Access Complexity
LOW
Authentication
SINGLE
Confidentiality Impact
NONE
Integrity Impact
PARTIAL
Availability Impact
NONE
EPSS
Base Score:
0.07