CVE-2019-10444
CVE-2019-10444
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 0.8%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
16 Oct 2019Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Jenkins Bumblebee HP ALM Plugin 4.1.3 and earlier unconditionally disabled SSL/TLS and hostname verification for connections to HP ALM.
Affected products
Jenkins project · Jenkins Bumblebee HP ALM PluginWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →