CVE Vulnerabilities

CVE-2013-6372

Published: May 08, 2014 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
2.1 LOW
AV:L/AC:L/Au:N/C:P/I:N/A:N
RedHat/V3
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

The Subversion plugin before 1.54 for Jenkins stores credentials using base64 encoding, which allows local users to obtain passwords and SSH private keys by reading a subversion.credentials file.

Affected Software

NameVendorStart VersionEnd Version
Subversion-pluginJenkins-ci*1.53 (including)
Subversion-pluginJenkins-ci1.0 (including)1.0 (including)
Subversion-pluginJenkins-ci1.1 (including)1.1 (including)
Subversion-pluginJenkins-ci1.2 (including)1.2 (including)
Subversion-pluginJenkins-ci1.3 (including)1.3 (including)
Subversion-pluginJenkins-ci1.4 (including)1.4 (including)
Subversion-pluginJenkins-ci1.5 (including)1.5 (including)
Subversion-pluginJenkins-ci1.6 (including)1.6 (including)
Subversion-pluginJenkins-ci1.7 (including)1.7 (including)
Subversion-pluginJenkins-ci1.8 (including)1.8 (including)
Subversion-pluginJenkins-ci1.9 (including)1.9 (including)
Subversion-pluginJenkins-ci1.10 (including)1.10 (including)
Subversion-pluginJenkins-ci1.11 (including)1.11 (including)
Subversion-pluginJenkins-ci1.12 (including)1.12 (including)
Subversion-pluginJenkins-ci1.13 (including)1.13 (including)
Subversion-pluginJenkins-ci1.14 (including)1.14 (including)
Subversion-pluginJenkins-ci1.15 (including)1.15 (including)
Subversion-pluginJenkins-ci1.16 (including)1.16 (including)
Subversion-pluginJenkins-ci1.17 (including)1.17 (including)
Subversion-pluginJenkins-ci1.18 (including)1.18 (including)
Subversion-pluginJenkins-ci1.19 (including)1.19 (including)
Subversion-pluginJenkins-ci1.20 (including)1.20 (including)
Subversion-pluginJenkins-ci1.21 (including)1.21 (including)
Subversion-pluginJenkins-ci1.22 (including)1.22 (including)
Subversion-pluginJenkins-ci1.23 (including)1.23 (including)
Subversion-pluginJenkins-ci1.24 (including)1.24 (including)
Subversion-pluginJenkins-ci1.25 (including)1.25 (including)
Subversion-pluginJenkins-ci1.26 (including)1.26 (including)
Subversion-pluginJenkins-ci1.27 (including)1.27 (including)
Subversion-pluginJenkins-ci1.28 (including)1.28 (including)
Subversion-pluginJenkins-ci1.29 (including)1.29 (including)
Subversion-pluginJenkins-ci1.30 (including)1.30 (including)
Subversion-pluginJenkins-ci1.31 (including)1.31 (including)
Subversion-pluginJenkins-ci1.32 (including)1.32 (including)
Subversion-pluginJenkins-ci1.33 (including)1.33 (including)
Subversion-pluginJenkins-ci1.34 (including)1.34 (including)
Subversion-pluginJenkins-ci1.35 (including)1.35 (including)
Subversion-pluginJenkins-ci1.36 (including)1.36 (including)
Subversion-pluginJenkins-ci1.37 (including)1.37 (including)
Subversion-pluginJenkins-ci1.38 (including)1.38 (including)
Subversion-pluginJenkins-ci1.39 (including)1.39 (including)
Subversion-pluginJenkins-ci1.40 (including)1.40 (including)
Subversion-pluginJenkins-ci1.41 (including)1.41 (including)
Subversion-pluginJenkins-ci1.42 (including)1.42 (including)
Subversion-pluginJenkins-ci1.43 (including)1.43 (including)
Subversion-pluginJenkins-ci1.44 (including)1.44 (including)
Subversion-pluginJenkins-ci1.45 (including)1.45 (including)
Subversion-pluginJenkins-ci1.46 (including)1.46 (including)
Subversion-pluginJenkins-ci1.47 (including)1.47 (including)
Subversion-pluginJenkins-ci1.48 (including)1.48 (including)
Subversion-pluginJenkins-ci1.49 (including)1.49 (including)
Subversion-pluginJenkins-ci1.50 (including)1.50 (including)
Subversion-pluginJenkins-ci1.51 (including)1.51 (including)
Subversion-pluginJenkins-ci1.52 (including)1.52 (including)
Red Hat OpenShift Enterprise 2.1RedHatjenkins-0:1.565.3-1.el6op*
Red Hat OpenShift Enterprise 2.1RedHatjenkins-plugin-openshift-0:0.6.40.1-0.el6op*
Red Hat OpenShift Enterprise 2.1RedHatopenshift-origin-cartridge-jenkins-0:1.20.3.5-1.el6op*
JenkinsUbuntuupstream*

References