CVE-2020-2275
16.09.2020, 14:15
Jenkins Copy data to workspace Plugin 1.0 and earlier does not limit which directories can be copied from the Jenkins controller to job workspaces, allowing attackers with Job/Configure permission to read arbitrary files on the Jenkins controller.
Vendor | Product | Version |
---|---|---|
jenkins | copy_data_to_workspace | 𝑥 ≤ 1.0 |
𝑥
= Vulnerable software versions