4.3
CVSSv3

CVE-2023-30518

Published: 12/04/2023 Updated: 20/04/2023
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

A missing permission check in Jenkins Thycotic Secret Server Plugin 1.0.2 and previous versions allows attackers with Overall/Read permission to enumerate credentials IDs of credentials stored in Jenkins.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

jenkins thycotic secret server