Description
Jenkins before 2.3 and LTS before 1.651.2 allow remote authenticated users with multiple accounts to cause a denial of service (unable to login) by editing the "full name."
Remediation
References
Related Vulnerabilities
Apache Tomcat Insufficiently Protected Credentials Vulnerability (CVE-2019-12418)
phpMyAdmin Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-2038)
WordPress Plugin WP Canvas-Shortcodes Cross-Site Scripting (2.06)
WordPress Plugin Online Hotel Booking System Pro SQL Injection (1.0)