Описание
The Subversion plugin before 1.54 for Jenkins stores credentials using base64 encoding, which allows local users to obtain passwords and SSH private keys by reading a subversion.credentials file.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| esm-infra-legacy/trusty | DNE | |
| lucid | DNE | |
| precise | not-affected | |
| quantal | not-affected | |
| saucy | not-affected | |
| trusty | DNE | |
| trusty/esm | DNE | |
| upstream | released | 1.54 |
Показывать по
EPSS
2.1 Low
CVSS2
Связанные уязвимости
The Subversion plugin before 1.54 for Jenkins stores credentials using base64 encoding, which allows local users to obtain passwords and SSH private keys by reading a subversion.credentials file.
The Subversion plugin before 1.54 for Jenkins stores credentials using base64 encoding, which allows local users to obtain passwords and SSH private keys by reading a subversion.credentials file.
The Subversion plugin before 1.54 for Jenkins stores credentials using ...
Jenkins Subversion Plugin Stores Credentials with Base64 Encoding
EPSS
2.1 Low
CVSS2