The input control in PasswordParameterDefinition in Jenkins before 1.551 and LTS before 1.532.2 allows remote attackers to obtain passwords by reading the HTML source code, related to the default value.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: debian

Published: 2014-10-17T15:00:00

Updated: 2024-08-06T09:58:16.215Z

Reserved: 2014-02-19T00:00:00

Link: CVE-2014-2061

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2014-10-17T15:55:05.603

Modified: 2016-06-13T23:35:32.657

Link: CVE-2014-2061

cve-icon Redhat

Severity : Moderate

Publid Date: 2014-02-07T00:00:00Z

Links: CVE-2014-2061 - Bugzilla