Description
A Improper authorization vulnerability exists in Jenkins 2.132 and earlier, 2.121.1 and earlier in SlaveComputer.java that allows attackers with Overall/Read permission to initiate agent launches, and abort in-progress agent launches.
Remediation
References
Related Vulnerabilities
OpenSSL Resource Management Errors Vulnerability (CVE-2012-1165)
WordPress 4.2.x Same Origin Method Execution (SOME) Vulnerability (4.2 - 4.2.7)
Oracle Database Server CVE-2014-6545 Vulnerability (CVE-2014-6545)
MySQL CVE-2024-20971 Vulnerability (CVE-2024-20971)
Zope Web Application Server Other Vulnerability (CVE-2001-0567)