Lucene search

K
osvGoogleOSV:CVE-2021-21636
HistoryMar 30, 2021 - 12:16 p.m.

CVE-2021-21636

2021-03-3012:16:10
Google
osv.dev
4
jenkins
team foundation server
plugin
vulnerability
security
credentials

AI Score

6.3

Confidence

High

EPSS

0.001

Percentile

22.0%

A missing permission check in Jenkins Team Foundation Server Plugin 5.157.1 and earlier allows attackers with Overall/Read permission to enumerate credentials ID of credentials stored in Jenkins.

AI Score

6.3

Confidence

High

EPSS

0.001

Percentile

22.0%