CVE-2023-37948
EUVD-2023-208612.07.2023, 16:15
Jenkins Oracle Cloud Infrastructure Compute Plugin 1.0.16 and earlier does not validate SSH host keys when connecting OCI clouds, enabling man-in-the-middle attacks.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| jenkins | cloud_infrastructure_compute | 𝑥 < 1.0.17 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration