Description
A flaw was found in wildfly-core before 7.2.5.GA. The Management users with Monitor, Auditor and Deployer Roles should not be allowed to modify the runtime state of the server
Remediation
References
Related Vulnerabilities
Oracle Application Server CVE-2006-0288 Vulnerability (CVE-2006-0288)
WordPress Plugin Japanized For WooCommerce Cross-Site Scripting (2.5.4)
Joomla Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2019-18650)
WordPress Plugin My Calendar Cross-Site Scripting (2.3.28)
PHP Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2007-2748)