Description
Jenkins Multijob plugin version 1.25 and earlier did not check permissions in the Resume Build action, allowing anyone with Job/Read permission to resume the build.
Remediation
References
https://jenkins.io/security/advisory/2017-10-23/
http://www.securityfocus.com/bid/102824
Related Vulnerabilities
CVE-2023-35887 Vulnerability in maven package org.apache.sshd:sshd-sftp
CVE-2022-43183 Vulnerability in maven package com.xuxueli:xxl-job-core
CVE-2012-4431 Vulnerability in maven package org.apache.tomcat:catalina
CVE-2019-16562 Vulnerability in maven package org.jenkins-ci.plugins:buildgraph-view
CVE-2020-1942 Vulnerability in maven package org.apache.nifi:nifi-security-utils