Количество 2
Количество 2
CVE-2018-1000104
A plaintext storage of a password vulnerability exists in Jenkins Coverity Plugin 1.10.0 and earlier in CIMInstance.java that allows an attacker with local file system access or control of a Jenkins administrator's web browser (e.g. malicious extension) to retrieve the configured keystore and private key passwords.
GHSA-cghg-jcv6-4v5m
Jenkins Coverity Plugin has Insufficiently Protected Credentials
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2018-1000104 A plaintext storage of a password vulnerability exists in Jenkins Coverity Plugin 1.10.0 and earlier in CIMInstance.java that allows an attacker with local file system access or control of a Jenkins administrator's web browser (e.g. malicious extension) to retrieve the configured keystore and private key passwords. | CVSS3: 7.8 | 0% Низкий | почти 8 лет назад | |
GHSA-cghg-jcv6-4v5m Jenkins Coverity Plugin has Insufficiently Protected Credentials | CVSS3: 2.7 | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу