Description
In Jenkins before versions 2.44, 2.32.2 low privilege users were able to act on administrative monitors due to them not being consistently protected by permission checks (SECURITY-371).
Remediation
References
Related Vulnerabilities
Apache Tomcat version older than 6.0.36
WordPress Plugin Allow PHP in Posts and Pages 'id' Parameter SQL Injection (2.0.0.RC1)
ownCloud Improper Access Control Vulnerability (CVE-2016-9461)
Oracle Database Server CVE-2012-0512 Vulnerability (CVE-2012-0512)
XWiki Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2023-37914)