CVE-2017-2648

6.8MEDIUM

It was found that jenkins-ssh-slaves-plugin before version 1.15 did not perform host key verification, thereby enabling Man-in-the-Middle attacks.

Published: 7/27/2018Updated: 11/21/2024

Description

It was found that jenkins-ssh-slaves-plugin before version 1.15 did not perform host key verification, thereby enabling Man-in-the-Middle attacks.

AI AnalysisPowered by AI

Affected Products

jenkinsssh_slaves

References