CVE-2020-2251

MEDIUM4.3EPSS 0.04%

Passwords transmitted in plain text by Jenkins ReadyAPI Functional Testing Plugin

發布日:2022/5/24修改日:2025/4/3

描述

Jenkins SoapUI Pro Functional Testing Plugin 1.5 and earlier transmits project passwords in its configuration in plain text as part of job configuration forms, potentially resulting in their exposure.

受影響套件(2)

CVSS 分數

來源版本嚴重程度向量
osvCVSS 3.1MEDIUM4.3CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

參考連結(5)