cve/2013/CVE-2013-5676.md
2024-06-18 02:51:15 +02:00

685 B

CVE-2013-5676

Description

The Jenkins Plugin for SonarQube 3.7 and earlier allows remote authenticated users to obtain sensitive information (cleartext passwords) by reading the value in the sonar.sonarPassword parameter from jenkins/configure.

POC

Reference

Github

No PoCs found on GitHub currently.