CVE-2018-1999027

Publication date

2018-08-01 13:00:00

Family

mitre

State

PUBLISHED

Description

An exposure of sensitive information vulnerability exists in Jenkins SaltStack Plugin 3.1.6 and earlier in SaltAPIBuilder.java, SaltAPIStep.java that allows attackers to capture credentials with a known credentials ID stored in Jenkins.