Количество 2
Количество 2
CVE-2022-41246
больше 3 лет назад
A missing permission check in Jenkins Worksoft Execution Manager Plugin 10.0.3.503 and earlier allows attackers with Overall/Read permission to connect to an attacker-specified URL using attacker-specified credentials IDs obtained through another method, capturing credentials stored in Jenkins.
CVSS3: 6.5
EPSS: Низкий
GHSA-p5hr-rf6w-3vvh
больше 3 лет назад
CSRF vulnerability and mM
CVSS3: 4.2
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2022-41246 A missing permission check in Jenkins Worksoft Execution Manager Plugin 10.0.3.503 and earlier allows attackers with Overall/Read permission to connect to an attacker-specified URL using attacker-specified credentials IDs obtained through another method, capturing credentials stored in Jenkins. | CVSS3: 6.5 | 0% Низкий | больше 3 лет назад | |
GHSA-p5hr-rf6w-3vvh CSRF vulnerability and mM | CVSS3: 4.2 | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу
20