CVE-2019-11350
CRITICALCloudBees Jenkins Operations Center <2.150.2.3 - Info Disclosure
Title source: llmDescription
CloudBees Jenkins Operations Center 2.150.2.3, when an expired trial license exists, allows Cleartext Password Storage and Retrieval via the proxy configuration page.
Scores
CVSS v3
9.8
EPSS
0.0036
EPSS Percentile
57.7%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Classification
CWE
CWE-522
Status
published
Affected Products (1)
cloudbees/jenkins_operations_center
Timeline
Published
Apr 19, 2019
Tracked Since
Feb 18, 2026