#VU46880 Path traversal in Blue Ocean - CVE-2020-2254
Published: September 16, 2020 / Updated: September 22, 2020
Blue Ocean
Jenkins
Description
The vulnerability allows a remote attacker to perform directory traversal attacks.
The vulnerability exists due to the affected plugin provides an undocumented feature flag, "blueocean.features.GIT_READ_SAVE_TYPE", that when set to the value "clone". A remote authenticated attacker with Item/Configure or Item/Create permission can send a specially crafted HTTP request and read arbitrary files on the system.