Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
4.8
CVE-2020-2205
- EPSS 0.18%
- Published 02.07.2020 15:15:17
- Last modified 21.11.2024 05:24:57
Jenkins VncRecorder Plugin 1.25 and earlier does not escape a tool path in the `checkVncServ` form validation endpoint, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by Jenkins administrators.
6.1
CVE-2020-2206
- EPSS 0.3%
- Published 02.07.2020 15:15:17
- Last modified 21.11.2024 05:24:57
Jenkins VncRecorder Plugin 1.25 and earlier does not escape a parameter value in the checkVncServ form validation endpoint, resulting in a reflected cross-site scripting (XSS) vulnerability.
1