Lucene search

K
cvelistJenkinsCVELIST:CVE-2020-2274
HistorySep 16, 2020 - 1:20 p.m.

CVE-2020-2274

2020-09-1613:20:48
jenkins
www.cve.org
1

0.0004 Low

EPSS

Percentile

12.6%

Jenkins ElasTest Plugin 1.2.1 and earlier stores its server password unencrypted in its global configuration file on the Jenkins controller where it can be viewed by users with access to the Jenkins controller file system.

CNA Affected

[
  {
    "product": "Jenkins ElasTest Plugin",
    "vendor": "Jenkins project",
    "versions": [
      {
        "lessThanOrEqual": "1.2.1",
        "status": "affected",
        "version": "unspecified",
        "versionType": "custom"
      },
      {
        "lessThan": "unspecified",
        "status": "unknown",
        "version": "next of 1.2.1",
        "versionType": "custom"
      }
    ]
  }
]

0.0004 Low

EPSS

Percentile

12.6%

Related for CVELIST:CVE-2020-2274