CVE Vulnerabilities

CVE-2025-0148

Missing Password Field Masking

Published: Feb 03, 2025 | Modified: Feb 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Missing password field masking in the Zoom Jenkins Marketplace plugin before version 1.6 may allow an unauthenticated user to conduct a disclosure of information via adjacent network access.

Weakness

The product does not mask passwords during entry, increasing the potential for attackers to observe and capture passwords.

Potential Mitigations

References