CVE-2020-2183

Source
https://nvd.nist.gov/vuln/detail/CVE-2020-2183
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2020-2183.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2020-2183
Aliases
Published
2020-05-06T13:15:14Z
Modified
2024-10-12T06:19:34.284243Z
Severity
  • 6.5 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N CVSS Calculator
Summary
[none]
Details

Jenkins Copy Artifact Plugin 1.43.1 and earlier performs improper permission checks, allowing attackers to copy artifacts from jobs they have no permission to access.

References

Affected packages

Git / github.com/jenkinsci/copyartifact-plugin

Affected ranges

Type
GIT
Repo
https://github.com/jenkinsci/copyartifact-plugin
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected

Affected versions

copyartifact-1.*

copyartifact-1.13
copyartifact-1.14
copyartifact-1.15
copyartifact-1.16
copyartifact-1.17
copyartifact-1.18
copyartifact-1.19
copyartifact-1.20
copyartifact-1.21
copyartifact-1.22
copyartifact-1.23
copyartifact-1.24
copyartifact-1.25
copyartifact-1.26
copyartifact-1.27
copyartifact-1.28
copyartifact-1.29
copyartifact-1.30
copyartifact-1.31
copyartifact-1.32
copyartifact-1.32.1
copyartifact-1.33
copyartifact-1.34
copyartifact-1.35
copyartifact-1.35.1
copyartifact-1.35.2
copyartifact-1.36
copyartifact-1.36.1
copyartifact-1.37
copyartifact-1.38
copyartifact-1.38.1
copyartifact-1.39
copyartifact-1.39.1
copyartifact-1.40
copyartifact-1.40-beta-1
copyartifact-1.41
copyartifact-1.42
copyartifact-1.42.1
copyartifact-1.42.1-beta-1
copyartifact-1.43
copyartifact-1.43.1