Vulnerabilities > Credentials Management

DATE CVE VULNERABILITY TITLE RISK
2019-08-29 CVE-2019-11064 Credentials Management vulnerability in multiple products
A vulnerability of remote credential disclosure was discovered in Advan VD-1 firmware versions up to 230.
network
low complexity
androvideo geovision CWE-255
5.0
2019-08-20 CVE-2019-10960 Credentials Management vulnerability in Zebra products
Zebra Industrial Printers All Versions, Zebra printers are shipped with unrestricted end-user access to front panel options.
network
low complexity
zebra CWE-255
5.0
2019-08-07 CVE-2019-10385 Credentials Management vulnerability in Jenkins Eggplant
Jenkins eggPlant Plugin 2.2 and earlier stores credentials unencrypted in job config.xml files on the Jenkins master where they can be viewed by users with Extended Read permission, or access to the master file system.
network
low complexity
jenkins CWE-255
4.0
2019-08-07 CVE-2019-10379 Credentials Management vulnerability in Google Cloud Messaging Notification 1.0
Jenkins Google Cloud Messaging Notification Plugin 1.0 and earlier stores credentials unencrypted in its global configuration file on the Jenkins master where they can be viewed by users with access to the master file system.
network
low complexity
google CWE-255
4.0
2019-08-07 CVE-2019-10378 Credentials Management vulnerability in Jenkins Testlink
Jenkins TestLink Plugin 3.16 and earlier stores credentials unencrypted in its global configuration file on the Jenkins master where they can be viewed by users with access to the master file system.
local
low complexity
jenkins CWE-255
2.1
2019-08-07 CVE-2019-10370 Credentials Management vulnerability in Jenkins Mask Passwords
Jenkins Mask Passwords Plugin 2.12.0 and earlier transmits globally configured passwords in plain text as part of the configuration form, potentially resulting in their exposure.
network
jenkins CWE-255
4.3
2019-08-06 CVE-2016-10791 Credentials Management vulnerability in Cpanel
cPanel before 60.0.15 does not ensure that system accounts lack a valid password, so that logins are impossible (CPANEL-9559).
network
low complexity
cpanel CWE-255
5.0
2019-08-05 CVE-2017-18470 Credentials Management vulnerability in Cpanel
cPanel before 62.0.4 has a fixed password for the Munin MySQL test account (SEC-196).
network
low complexity
cpanel CWE-255
4.0
2019-08-01 CVE-2016-10821 Credentials Management vulnerability in Cpanel
In cPanel before 55.9999.141, Scripts/addpop reveals a command-line password in a process list (SEC-75).
network
low complexity
cpanel CWE-255
4.0
2019-07-31 CVE-2019-10366 Credentials Management vulnerability in Jenkins Skytap Cloud CI
Jenkins Skytap Cloud CI Plugin 2.06 and earlier stored credentials unencrypted in job config.xml files on the Jenkins master where they could be viewed by users with Extended Read permission, or access to the master file system.
network
low complexity
jenkins CWE-255
4.0