CVEs Blog | G5 Cyber Security

CVE-2020-2123 – Jenkins RadarGun Plugin 1.7 and earlier does not configure its YAML parse

Jenkins RadarGun Plugin 1.7 and earlier does not configure its YAML parser to prevent the instantiation of arbitrary types, resulting in a remote code execution vulnerability.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-2123

Reference (s):

Exit mobile version