Vulnerabilities > CVE-2019-10365 - Exposure of Resource to Wrong Sphere vulnerability in Google Kubernetes Engine
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
LOW Integrity impact
NONE Availability impact
NONE Summary
Jenkins Google Kubernetes Engine Plugin 0.6.2 and earlier created a temporary file containing a temporary access token in the project workspace, where it could be accessed by users with Job/Read permission.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 9 |