PT-2022-14829 · Jenkins · Jenkins Ssh Agent Plugin+1
Published
2022-01-12
·
Updated
2023-11-30
·
CVE-2022-20620
CVSS v3.1
4.3
Medium
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Jenkins SSH Agent Plugin versions 1.23 and earlier
Jenkins SSH Agent Plugin versions prior to 1.23.2 and 1.22.1
Description
The issue is related to missing permission checks in the Jenkins SSH Agent Plugin, which allows attackers with Overall/Read access to enumerate credentials IDs of credentials stored in Jenkins. These credentials IDs can be used as part of an attack to capture the credentials using another vulnerability.
Recommendations
For Jenkins SSH Agent Plugin versions 1.23 and earlier, update to version 1.23.2 or later.
For Jenkins SSH Agent Plugin versions prior to 1.22.1, update to version 1.22.1 or later.
As a temporary workaround, consider restricting access to the plugin's HTTP endpoints to minimize the risk of exploitation.
Exploit
Fix
Missing Authorization
Exposure of Resource to Wrong Sphere
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Jenkins
Jenkins Ssh Agent Plugin