CVE-2022-25210

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
15/02/2022
Last modified:
03/11/2023

Description

Jenkins Convertigo Mobile Platform Plugin 1.1 and earlier uses static fields to store job configuration information, allowing attackers with Item/Configure permission to capture passwords of the jobs that will be configured.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:jenkins:convertigo_mobile_platform:*:*:*:*:*:jenkins:*:* 1.1 (including)


References to Advisories, Solutions, and Tools