CVE Published: 16/10/2019 |
CVE Updated: 04/08/2024 |
CVE Year: 2019 Source: jenkins |
Vendor: Jenkins project |
Product: Jenkins ElasticBox CI Plugin Status : PUBLISHED
CVE-2019-10450 Description
Jenkins ElasticBox CI Plugin stores credentials unencrypted in the global config.xml configuration file on the Jenkins master where they can be viewed by users with access to the master file system.