Skip to main content

Vendor/product archive

jenkins / netsparker_cloud_scan CVEs

Beta · best-effort

3 CVEs tagged to jenkins / netsparker_cloud_scan0 Critical, 1 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2019-10291

Published Apr 4, 2019

Jenkins Netsparker Cloud Scan Plugin 1.1.5 and older stored credentials unencrypted in its global configuration file on the Jenkins master where they could be viewed by users with…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2019-10290

Published Apr 4, 2019

A missing permission check in Jenkins Netsparker Cloud Scan Plugin 1.1.5 and older in the NCScanBuilder.DescriptorImpl#doValidateAPI form validation method allowed attackers with…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-10289

Published Apr 4, 2019

A cross-site request forgery vulnerability in Jenkins Netsparker Cloud Scan Plugin 1.1.5 and older in the NCScanBuilder.DescriptorImpl#doValidateAPI form validation method allowed…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1