CVE-2019-10470

All FrameworksKubernetesCWE-OtherCVE-2019-10470

CVE-2019-10470

State: PUBLISHED · Published: 2019-10-23 · Updated: 2024-08-04 · Assigner: jenkins
Description
A missing permission check in Jenkins ElasticBox Jenkins Kubernetes CI/CD Plugin in form-related methods allowed users with Overall/Read access to enumerate credentials ID of credentials stored in Jenkins.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2019/10xxx/CVE-2019-10470.json