Jenkins Git server Plugin 114.v068a_c7cc2574 and earlier does not perform a permission check for read access to a Git repository over SSH, allowing attackers with a previously configured SSH public key but lacking Overall/Read permission to access these repositories.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: jenkins
Published: 2024-05-02T13:28:04.598Z
Updated: 2024-08-02T02:42:59.969Z
Reserved: 2024-04-30T20:53:08.612Z
Link: CVE-2024-34146
Vulnrichment
Updated: 2024-08-02T02:42:59.969Z
NVD
Status : Awaiting Analysis
Published: 2024-05-02T14:15:10.380
Modified: 2024-11-21T09:18:11.610
Link: CVE-2024-34146
Redhat