Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown

CVE-2019-10462

Disclosure Date: October 23, 2019 (last updated October 26, 2023)
A cross-site request forgery vulnerability in Jenkins Dynatrace Application Monitoring Plugin 2.1.3 and earlier allowed attackers to connect to an attacker-specified URL using attacker-specified credentials.
Attacker Value
Unknown

CVE-2019-10463

Disclosure Date: October 23, 2019 (last updated October 26, 2023)
A missing permission check in Jenkins Dynatrace Application Monitoring Plugin allows attackers with Overall/Read permission to connect to an attacker-specified URL using attacker-specified credentials.
Attacker Value
Unknown

CVE-2019-10461

Disclosure Date: October 23, 2019 (last updated October 26, 2023)
Jenkins Dynatrace Application Monitoring Plugin 2.1.3 and earlier stored credentials unencrypted in its global configuration file on the Jenkins master where they could be viewed by users with access to the master file system.