The input control in PasswordParameterDefinition in Jenkins before 1.551 and LTS before 1.532.2 allows remote attackers to obtain passwords by reading the HTML source code, related to the default value.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-5251 | The input control in PasswordParameterDefinition in Jenkins before 1.551 and LTS before 1.532.2 allows remote attackers to obtain passwords by reading the HTML source code, related to the default value. |
Github GHSA |
GHSA-rxfv-gm5x-9wqj | Jenkin allows attackers to obtain passwords by reading the HTML source code |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: debian
Published:
Updated: 2024-08-06T09:58:16.215Z
Reserved: 2014-02-19T00:00:00
Link: CVE-2014-2061
No data.
Status : Deferred
Published: 2014-10-17T15:55:05.603
Modified: 2025-04-12T10:46:40.837
Link: CVE-2014-2061
OpenCVE Enrichment
No data.
EUVD
Github GHSA