CVE-2019-10465

All FrameworksWebLogicCWE-OtherCVE-2019-10465

CVE-2019-10465

State: PUBLISHED · Published: 2019-10-23 · Updated: 2024-08-04 · Assigner: jenkins
Description
A missing permission check in Jenkins Deploy WebLogic Plugin allows attackers with Overall/Read permission to connect to an attacker-specified URL using attacker-specified credentials, or determine whether a file or directory with an attacker-specified path exists on the Jenkins master file system.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2019/10xxx/CVE-2019-10465.json