CVEs Blog | G5 Cyber Security

CVE-2020-2108 – Jenkins WebSphere Deployer Plugin 1.6.1 and earlier does not configure th

Jenkins WebSphere Deployer Plugin 1.6.1 and earlier does not configure the XML parser to prevent XXE attacks which can be exploited by a user with Job/Configure permissions.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-2108

Reference (s):

Exit mobile version