CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 4.0. It affects Jenkins. It may be remotely exploitable. Exploitation may require the attacker to be authenticated.
CVE
CVE-2014-3680
Severity
MEDIUM
CVSS
4
EPSS
1.36%
Jenkins
Original NVD Description
Jenkins before 1.583 and LTS before 1.565.3 allows remote authenticated users with the Job/READ permission to obtain the default value for the password field of a parameterized job by reading the DOM.