CVE-2018-1000605

A man in the middle vulnerability exists in Jenkins CollabNet Plugin 2.0.4 and earlier in CollabNetApp.java, CollabNetPlugin.java, CNFormFieldValidator.java that allows attackers to impersonate any service that Jenkins connects to.
References
Configurations

Configuration 1

cpe:2.3:a:jenkins:collabnet:*:*:*:*:*:jenkins:*:*

Information

Published : 2018-06-26 05:29

Updated : 2018-10-09 03:07


NVD link : CVE-2018-1000605

Mitre link : CVE-2018-1000605

Products Affected
No products.
CWE
CWE-295

Improper Certificate Validation