CVE-2017-2648
Published Jul 27, 2018It was found that jenkins-ssh-slaves-plugin before version 1.15 did not perform host key verification, thereby enabling Man-in-the-Middle attacks.
Vendor/product archive
1 CVEs tagged to jenkins / ssh_slaves — 0 Critical, 0 High, 1 Medium, 0 Low, 0 Unrated.
It was found that jenkins-ssh-slaves-plugin before version 1.15 did not perform host key verification, thereby enabling Man-in-the-Middle attacks.