Логотип exploitDog
bind:CVE-2023-24425
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-24425

Количество 2

Количество 2

nvd логотип

CVE-2023-24425

около 3 лет назад

Jenkins Kubernetes Credentials Provider Plugin 1.208.v128ee9800c04 and earlier does not set the appropriate context for Kubernetes credentials lookup, allowing attackers with Item/Configure permission to access and potentially capture Kubernetes credentials they are not entitled to.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-2jpx-h8j2-g8m4

около 3 лет назад

Exposure of system-scoped Kubernetes credentials in Jenkins Kubernetes Credentials Provider Plugin

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-24425

Jenkins Kubernetes Credentials Provider Plugin 1.208.v128ee9800c04 and earlier does not set the appropriate context for Kubernetes credentials lookup, allowing attackers with Item/Configure permission to access and potentially capture Kubernetes credentials they are not entitled to.

CVSS3: 6.5
1%
Низкий
около 3 лет назад
github логотип
GHSA-2jpx-h8j2-g8m4

Exposure of system-scoped Kubernetes credentials in Jenkins Kubernetes Credentials Provider Plugin

CVSS3: 6.5
1%
Низкий
около 3 лет назад

Уязвимостей на страницу