CVE-2018-1000149

A man in the middle vulnerability exists in Jenkins Ansible Plugin 0.8 and older in AbstractAnsibleInvocation.java, AnsibleAdHocCommandBuilder.java, AnsibleAdHocCommandInvocationTest.java, AnsibleContext.java, AnsibleJobDslExtension.java, AnsiblePlaybookBuilder.java, AnsiblePlaybookStep.java that disables host key verification by default.
References
Configurations

Configuration 1

cpe:2.3:a:jenkins:ansible:*:*:*:*:*:jenkins:*:*

Information

Published : 2018-04-05 01:29

Updated : 2020-08-24 05:37


NVD link : CVE-2018-1000149

Mitre link : CVE-2018-1000149

Products Affected
No products.