CVE Published: 27/07/2018 |
CVE Updated: 16/09/2024 |
CVE Year: 2017 Source: redhat |
Vendor: Jenkins project |
Product: Active Directory Jenkins plugin Status : PUBLISHED
CVE-2017-2649 Description
It was found that the Active Directory Plugin for Jenkins up to and including version 2.2 did not verify certificates of the Active Directory server, thereby enabling Man-in-the-Middle attacks.