cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2020-2145,https://securityvulnerability.io/vulnerability/CVE-2020-2145,,Jenkins Zephyr Enterprise Test Management Plugin 1.9.1 and earlier stores its Zephyr password in plain text on the Jenkins master file system.,Jenkins,Jenkins Zephyr Enterprise Test Management Plugin,5.5,MEDIUM,0.0004400000034365803,false,,false,false,false,,,false,false,,2020-03-09T15:01:00.000Z,0 CVE-2019-1003085,https://securityvulnerability.io/vulnerability/CVE-2019-1003085,,A missing permission check in Jenkins Zephyr Enterprise Test Management Plugin in the ZeeDescriptor#doTestConnection form validation method allows attackers with Overall/Read permission to initiate a connection to an attacker-specified server.,Jenkins,Jenkins Zephyr Enterprise Test Management Plugin,6.5,MEDIUM,0.0010900000343099236,false,,false,false,false,,,false,false,,2019-04-04T15:38:49.000Z,0 CVE-2019-1003084,https://securityvulnerability.io/vulnerability/CVE-2019-1003084,,A cross-site request forgery vulnerability in Jenkins Zephyr Enterprise Test Management Plugin in the ZeeDescriptor#doTestConnection form validation method allows attackers to initiate a connection to an attacker-specified server.,Jenkins,Jenkins Zephyr Enterprise Test Management Plugin,6.5,MEDIUM,0.0016299999551847577,false,,false,false,false,,,false,false,,2019-04-04T15:38:49.000Z,0