CVE-2017-1000245

Description

The SSH Plugin stores credentials which allow jobs to access remote servers via the SSH protocol. User passwords and passphrases for encrypted SSH keys are stored in plaintext in a configuration file.

Risk Information

Base Score
9.8
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.061

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2017-1000245 are fixed in Jenkins - ssh 2.5Windows
Vulnerabilities CVE-2017-1000245 are affected in Jvnet - ssh 2.3Windows
Vulnerabilities CVE-2017-1000245 are fixed in Jenkins - ssh for Linux 2.5Linux
Vulnerabilities CVE-2017-1000245 are affected in Jvnet - ssh for Linux 2.3Linux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234