Showing 1 vulnerability on this page for jenkins-ssh-slaves-plugin

Signals CISA KEV Ransomware Nuclei
jenkins vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

Jenkins SSH Build Agents Plugin did not verify host keys

It was found that jenkins-ssh-slaves-plugin before version 1.15 did not perform host key verification, thereby enabling Man-in-the-Middle attacks.

CWE-295Jul 27, 2018
CVSS6.8v3.0EPSS1.42%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX