131 vulnerabilidades · DevOps Orden: CVSS EPSS Año ID
CVE-2020-2140
Jenkins Audit Trail Plugin DevOps Web ⚡ nuclei
N/A
UNKNOWN
EPSS
44.8%
2020 0 PoCs

Jenkins Audit Trail Plugin 3.2 and earlier does not escape the error message for the URL Patterns field form validation, resulting in a reflected cross-site scripting vulnerability.

CVE-2020-2229
Jenkins DevOps Web
N/A
UNKNOWN
EPSS
2.6%
2020 2 PoCs

Jenkins 2.251 and earlier, LTS 2.235.3 and earlier does not escape the tooltip content of help icons, resulting in a stored cross-site scripting (XSS) vulnerability.

CVE-2020-13936
Apache Velocity Engine DevOps Web
N/A
UNKNOWN
EPSS
16.4%
2020 2 PoCs

An attacker that is able to modify Velocity templates may execute arbitrary Java code or run arbitrary system commands with the same privileges as the account running the Servlet container. This applies to applications that allow untrusted users to upload/modify velocity templates running Apache Velocity Engine versions up to 2.2.

CVE-2020-11454
Software Genérico DevOps Web
N/A
UNKNOWN
EPSS
0.5%
2020 1 PoC

Microstrategy Web 10.4 is vulnerable to Stored XSS in the HTML Container and Insert Text features in the window, allowing for the creation of a new dashboard. In order to exploit this vulnerability, a user needs to get access to a shared dashboard or have the ability to create a dashboard on the application.

CVE-2020-13788
Software Genérico DevOps
N/A
UNKNOWN
EPSS
0.2%
2020 2 PoCs

Harbor prior to 2.0.1 allows SSRF with this limitation: an attacker with the ability to edit projects can scan ports of hosts accessible on the Harbor server's intranet.

CVE-2020-10709
Tower DevOps
N/A
UNKNOWN
EPSS
0.0%
2020 CWE-287 1 PoC

A security flaw was found in Ansible Tower when requesting an OAuth2 token with an OAuth2 application. Ansible Tower uses the token to provide authentication. This flaw allows an attacker to obtain a refresh token that does not expire. The original token granted to the user still has access to Ansible Tower, which allows any user that can gain access to the token to be fully authenticated to Ansible Tower. This flaw affects Ansible Tower versions before 3.6.4 and Ansible Tower versions before 3.5.6.

CVE-2020-2091
Jenkins Amazon EC2 Plugin DevOps Cloud
N/A
UNKNOWN
EPSS
0.0%
2020 1 PoC

A missing permission check in Jenkins Amazon EC2 Plugin 1.47 and earlier allows attackers with Overall/Read permission to connect to an attacker-specified URL within the AWS region using attacker-specified credentials IDs obtained through another method.

CVE-2020-8827
Software Genérico DevOps Web
N/A
UNKNOWN
EPSS
0.4%
2020 1 PoC

As of v1.5.0, the Argo API does not implement anti-automation measures such as rate limiting, account lockouts, or other anti-bruteforce measures. Attackers can submit an unlimited number of authentication attempts without consequence.

CVE-2020-11576
Software Genérico DevOps Web
N/A
UNKNOWN
EPSS
0.2%
2020 1 PoC

Fixed in v1.5.1, Argo version v1.5.0 was vulnerable to a user-enumeration vulnerability which allowed attackers to determine the usernames of valid (non-SSO) accounts because /api/v1/session returned 401 for an existing username and 404 otherwise.

CVE-2020-2152
Jenkins Subversion Release Manager Plugin DevOps Web
N/A
UNKNOWN
EPSS
0.1%
2020 1 PoC

Jenkins Subversion Release Manager Plugin 1.2 and earlier does not escape the error message for the Repository URL field form validation, resulting in a reflected cross-site scripting vulnerability.

CVE-2020-13379
Software Genérico DevOps Web ⚡ nuclei
N/A
UNKNOWN
EPSS
93.1%
2020 4 PoCs

The avatar feature in Grafana 3.0.1 through 7.0.1 has an SSRF Incorrect Access Control issue. This vulnerability allows any unauthenticated user/client to make Grafana send HTTP requests to any URL and return its result to the user/client. This can be used to gain information about the network that Grafana is running on. Furthermore, passing invalid URL objects could be used for DOS'ing Grafana via SegFault.