Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2020-2200

Jenkins Play Framework Plugin 1.0.2 and earlier lets users specify the path to the `play` command on the Jenkins master for a form validation endpoint, resulting in an OS command injection vulnerability exploitable by users able to store such a file on the Jenkins master.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.036
EPSS Ranking 87.0%
CVSS Severity
CVSS v3 Score 8.8
CVSS v2 Score 6.5
Products affected by CVE-2020-2200


Contact Us

Shodan ® - All rights reserved