CVE-2017-2648

6.8MEDIUM

It was found that jenkins-ssh-slaves-plugin before version 1.15 did not perform host key verification, thereby enabling Man-in-the-Middle attacks.

发布于: 7/27/2018更新于: 11/21/2024

描述

It was found that jenkins-ssh-slaves-plugin before version 1.15 did not perform host key verification, thereby enabling Man-in-the-Middle attacks.

AI分析AI驱动

受影响产品

jenkinsssh_slaves

参考资料