A missing permission check in Jenkins Fortify on Demand Uploader Plugin 3.0.10 and previous versions allows attackers with Overall/Read permission to initiate a connection to an attacker-specified server.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
jenkins fortify on demand uploader |