The Subversion plugin before 1.54 for Jenkins stores credentials using base64 encoding, which allows local users to obtain passwords and SSH private keys by reading a subversion.credentials file.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: redhat
Published: 2014-05-08T14:00:00
Updated: 2014-05-08T13:57:00
Reserved: 2013-11-04T00:00:00
Link: CVE-2013-6372
JSON object: View
NVD Information
Status : Modified
Published: 2014-05-08T14:29:11.940
Modified: 2023-02-13T04:49:31.833
Link: CVE-2013-6372
JSON object: View
Redhat Information
No data.
CWE