Lucene search

K
osvGoogleOSV:CVE-2021-21614
HistoryJan 13, 2021 - 4:15 p.m.

CVE-2021-21614

2021-01-1316:15:14
Google
osv.dev
5
cve-2021-21614
jenkins
bumblebee
hp alm plugin
credentials
unencrypted
global configuration
file system

AI Score

6.6

Confidence

High

EPSS

0

Percentile

12.6%

Jenkins Bumblebee HP ALM Plugin 4.1.5 and earlier stores credentials unencrypted in its global configuration file on the Jenkins controller where they can be viewed by users with access to the Jenkins controller file system.

AI Score

6.6

Confidence

High

EPSS

0

Percentile

12.6%