Vulnerabilities
Vulnerable Software
Jenkins:  >> Bumblebee Hp Alm  Security Vulnerabilities
Jenkins Bumblebee HP ALM Plugin 4.1.5 and earlier stores credentials unencrypted in its global configuration file on the Jenkins controller where they can be viewed by users with access to the Jenkins controller file system.
CVSS Score
5.5
EPSS Score
0.0
Published
2021-01-13
Jenkins Bumblebee HP ALM Plugin 4.1.3 and earlier unconditionally disabled SSL/TLS and hostname verification for connections to HP ALM.
CVSS Score
6.5
EPSS Score
0.0
Published
2019-10-16


Contact Us

Shodan ® - All rights reserved