CVE-2019-1003048

Description

A vulnerability in Jenkins PRQA Plugin 3.1.0 and earlier allows attackers with local file system access to the Jenkins home directory to obtain the unencrypted password from the plugin configuration.

Risk Information

Base Score
7.8
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.014

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2019-1003048 are fixed in Programmingresearch - prqa-plugin 3.1.2Windows
Vulnerabilities CVE-2019-1003048 are fixed in Programmingresearch - prqa-plugin for Linux 3.1.2Linux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234