binary1985/VulnerabilityDisclosure

binary1985/VulnerabilityDisclosure

Releases0
Stars10

CVE History

CVEPublishedCVSS v3CVSS v2
5 MEDIUM

CloudBees Jenkins Operations Center 2.150.2.3, when an expired trial license exists, allows Cleartext Password Storage and Retrieval via the proxy configuration page.

4 MEDIUM

Jaspersoft JasperReports 4.7 suffers from a saved credential disclosure vulnerability, which allows a remote authenticated user to retrieve stored Data Source passwords by accessing flow.html and reading the HTML source code of the page reached in an Edit action for a Data Source connector.