Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2022-28158

A missing permission check in Jenkins Pipeline: Phoenix AutoTest Plugin 1.3 and earlier allows attackers with Overall/Read permission to enumerate credentials IDs of credentials stored in Jenkins.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 60.0%
CVSS Severity
CVSS v3 Score 6.5
CVSS v2 Score 4.0
Products affected by CVE-2022-28158
  • Jenkins » Pipeline » Version: _phoenix_autotest
    cpe:2.3:a:jenkins:pipeline:_phoenix_autotest


Contact Us

Shodan ® - All rights reserved