CVEs Blog | G5 Cyber Security

CVE-2020-2301 – Jenkins Active Directory Plugin 2.19 and earlier allows attackers to log

Jenkins Active Directory Plugin 2.19 and earlier allows attackers to log in as any user with any password while a successful authentication of that user is still in the optional cache when using Windows/ADSI mode.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-2301

Reference (s):

Exit mobile version