Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown
CVE-2020-2215
Disclosure Date: July 02, 2020 (last updated February 21, 2025)
A cross-site request forgery vulnerability in Jenkins Zephyr for JIRA Test Management Plugin 1.5 and earlier allows attackers to connect to an attacker-specified HTTP server using attacker-specified username and password.
0
Attacker Value
Unknown
CVE-2020-2216
Disclosure Date: July 02, 2020 (last updated February 21, 2025)
A missing permission check in Jenkins Zephyr for JIRA Test Management Plugin 1.5 and earlier allows attackers with Overall/Read permission to connect to an attacker-specified HTTP server using attacker-specified username and password.
0
Attacker Value
Unknown
CVE-2020-2154
Disclosure Date: March 09, 2020 (last updated February 21, 2025)
Jenkins Zephyr for JIRA Test Management Plugin 1.5 and earlier stores its credentials in plain text in a global configuration file on the Jenkins master file system.
0