CVE-2013-5676
13.12.2013, 18:55
The Jenkins Plugin for SonarQube 3.7 and earlier allows remote authenticated users to obtain sensitive information (cleartext passwords) by reading the value in the sonar.sonarPassword parameter from jenkins/configure.Enginsight
Vendor | Product | Version |
---|---|---|
sonarsource | jenkins_plugin | - |
𝑥
= Vulnerable software versions
Common Weakness Enumeration