CVE-2020-2185

Publication date

2020-05-06 12:45:24

Family

jenkins

State

PUBLISHED

Description

Jenkins Amazon EC2 Plugin 1.50.1 and earlier does not validate SSH host keys when connecting agents, enabling man-in-the-middle attacks.