Логотип exploitDog
bind:CVE-2019-1003038
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-1003038

Количество 2

Количество 2

nvd логотип

CVE-2019-1003038

почти 7 лет назад

An insufficiently protected credentials vulnerability exists in Jenkins Repository Connector Plugin 1.2.4 and earlier in src/main/java/org/jvnet/hudson/plugins/repositoryconnector/ArtifactDeployer.java, src/main/java/org/jvnet/hudson/plugins/repositoryconnector/Repository.java, src/main/java/org/jvnet/hudson/plugins/repositoryconnector/UserPwd.java that allows an attacker with local file system access or control of a Jenkins administrator's web browser (e.g. malicious extension) to retrieve the password stored in the plugin configuration.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-99jc-v8pq-6qm4

больше 3 лет назад

Jenkins Repository Connector Plugin has insufficiently protected credentials

CVSS3: 3.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2019-1003038

An insufficiently protected credentials vulnerability exists in Jenkins Repository Connector Plugin 1.2.4 and earlier in src/main/java/org/jvnet/hudson/plugins/repositoryconnector/ArtifactDeployer.java, src/main/java/org/jvnet/hudson/plugins/repositoryconnector/Repository.java, src/main/java/org/jvnet/hudson/plugins/repositoryconnector/UserPwd.java that allows an attacker with local file system access or control of a Jenkins administrator's web browser (e.g. malicious extension) to retrieve the password stored in the plugin configuration.

CVSS3: 7.8
0%
Низкий
почти 7 лет назад
github логотип
GHSA-99jc-v8pq-6qm4

Jenkins Repository Connector Plugin has insufficiently protected credentials

CVSS3: 3.3
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу