CVE-2020-2258

Incorrect Authorization in maven/org.jenkins-ci.plugins/cloudbees-jenkins-advisor

Identifiers

CVE-2020-2258

Package Slug

maven/org.jenkins-ci.plugins/cloudbees-jenkins-advisor

Vulnerability

Incorrect Authorization

Description

Jenkins Health Advisor by CloudBees Plugin does not correctly perform a permission check in an HTTP endpoint, allowing attackers with Overall/Read permission to view that HTTP endpoint.

Affected Versions

All versions up to 3.2.0

Solution

Unfortunately, there is no solution available yet.

Last Modified

2020-09-21

source