CVE-2017-14941
02.10.2017, 01:29
Jaspersoft JasperReports 4.7 suffers from a saved credential disclosure vulnerability, which allows a remote authenticated user to retrieve stored Data Source passwords by accessing flow.html and reading the HTML source code of the page reached in an Edit action for a Data Source connector.Enginsight
Vendor | Product | Version |
---|---|---|
jaspersoft | jasperreports | 4.7.0 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration