CVE-2020-2309: Medium severity jenkins kubernetes ci vulnerability
A missing/An incorrect permission check in Jenkins Kubernetes Plugin 1.27.3 and earlier allows attackers with Overall/Read permission to enumerate credentials IDs of credentials stored in Jenkins.
Other sources
Jenkins Kubernetes Plugin prior to 1.27.4, 1.26.5, 1.25.4.1, and 1.21.6 does not perform a permission check in an HTTP endpoint.
This allows attackers with Overall/Read permission to enumerate credentials IDs of credentials stored in Jenkins. Those can be used as part of an attack to capture the credentials using another vulnerability.
An enumeration of credentials IDs in Kubernetes Plugin 1.27.4, 1.26.5, 1.25.4.1, and 1.21.6 requires the appropriate permissions.
Kubernetes Plugin 1.27.3 and earlier does not perform a permission check in an HTTP endpoint.
This allows attackers with Overall/Read permission to enumerate credentials IDs of credentials stored in Jenkins. Those can be used as part of an attack to capture the credentials using another vulnerability.
— Red Hat
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Frequently Asked Questions
What is the severity of CVE-2020-2309?
CVE-2020-2309 has a medium severity as it allows unauthorized users to enumerate credentials stored in Jenkins.
How do I fix CVE-2020-2309?
To fix CVE-2020-2309, update the Jenkins Kubernetes Plugin to version 1.27.4 or later.
What versions are affected by CVE-2020-2309?
CVE-2020-2309 affects Jenkins Kubernetes Plugin versions 1.27.3 and earlier.
Who can exploit CVE-2020-2309?
Attackers with Overall/Read permission in Jenkins can exploit CVE-2020-2309 to access credential IDs.
Is there a workaround for CVE-2020-2309?
Currently, there is no known workaround for CVE-2020-2309; the best action is to upgrade to a secure version.