Filtered by vendor Jenkins
Subscriptions
Filtered by product Pluggable Authentication Module
Subscriptions
Total
1 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2019-10319 | 1 Jenkins | 1 Pluggable Authentication Module | 2023-10-25 | 4.3 Medium |
A missing permission check in Jenkins PAM Authentication Plugin 1.5 and earlier, except 1.4.1 in PamSecurityRealm.DescriptorImpl#doTest allowed users with Overall/Read permission to obtain limited information about the file /etc/shadow and the user Jenkins is running as. |
Page 1 of 1.