CVE-2020-2187
06.05.2020, 13:15
Jenkins Amazon EC2 Plugin 1.50.1 and earlier unconditionally accepts self-signed certificates and does not perform hostname validation, enabling man-in-the-middle attacks.Enginsight
Vendor | Product | Version |
---|---|---|
jenkins | amazon_ec2 | 𝑥 ≤ 1.50.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration