#VU53181 Improper access control in P4 - CVE-2021-21654
Published: May 12, 2021
P4
Jenkins
Description
The vulnerability allows a remote attacker to gain unauthorized access to otherwise restricted functionality.
The vulnerability exists due to the affected plugin does not perform permission checks in multiple HTTP endpoints implementing connection tests. A remote authenticated attacker can connect to an attacker-specified Perforce server using attacker-specified username and password.