Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Jenkins Job Import Plugin 143.v044a_2e819b_27 and earlier does not perform a permission check in an HTTP endpoint, allowing attackers with Overall/Read permission to enumerate credentials IDs of credentials stored in Jenkins.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Jenkins Job Import Plugin 安全漏洞
Vulnerability Description
Jenkins Job Import Plugin是Jenkins开源的一个Jenkins任务配置导入与迁移插件。 Jenkins Job Import Plugin 143.v044a_2e819b_27及之前版本存在安全漏洞,该漏洞源于在HTTP端点中未执行权限检查,可能导致具有Overall/Read权限的攻击者枚举Jenkins中存储的凭据ID。
CVSS Information
N/A
Vulnerability Type
N/A