Security Advisory

CVE-2019-10465

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-10-23 12:45:40
Last updated 2024-08-04 22:24:18
Assigner jenkins
State PUBLISHED

Description

A missing permission check in Jenkins Deploy WebLogic Plugin allows attackers with Overall/Read permission to connect to an attacker-specified URL using attacker-specified credentials, or determine whether a file or directory with an attacker-specified path exists on the Jenkins master file system.