CVE-2015-5171
- EPSS 0.49%
- Published 24.10.2017 17:29:00
- Last modified 20.04.2025 01:37:25
The password change functionality in Cloud Foundry Runtime cf-release before 216, UAA before 2.5.2, and Pivotal Cloud Foundry (PCF) Elastic Runtime before 1.7.0 allow attackers to have unspecified impact by leveraging failure to expire existing sessi...
CVE-2015-5170
- EPSS 0.31%
- Published 24.10.2017 17:29:00
- Last modified 20.04.2025 01:37:25
Cloud Foundry Runtime cf-release before 216, UAA before 2.5.2, and Pivotal Cloud Foundry (PCF) Elastic Runtime before 1.7.0 allow remote attackers to conduct cross-site request forgery (CSRF) attacks on PWS and log a user into an arbitrary account by...
CVE-2017-8032
- EPSS 0.27%
- Published 10.07.2017 20:29:00
- Last modified 20.04.2025 01:37:25
In Cloud Foundry cf-release versions prior to v264; UAA release all versions of UAA v2.x.x, 3.6.x versions prior to v3.6.13, 3.9.x versions prior to v3.9.15, 3.20.x versions prior to v3.20.0, and other versions prior to v4.4.0; and UAA bosh release (...
CVE-2017-4991
- EPSS 0.28%
- Published 13.06.2017 06:29:00
- Last modified 20.04.2025 01:37:25
An issue was discovered in Cloud Foundry Foundation cf-release versions prior to v260; UAA release 2.x versions prior to v2.7.4.16, 3.6.x versions prior to v3.6.10, 3.9.x versions prior to v3.9.12, and other versions prior to v3.17.0; and UAA bosh re...
CVE-2017-4994
- EPSS 0.26%
- Published 13.06.2017 06:29:00
- Last modified 20.04.2025 01:37:25
An issue was discovered in Cloud Foundry Foundation cf-release versions prior to v263; UAA release 2.x versions prior to v2.7.4.18, 3.6.x versions prior to v3.6.12, 3.9.x versions prior to v3.9.14, and other versions prior to v4.3.0; and UAA bosh rel...
CVE-2017-4992
- EPSS 0.39%
- Published 13.06.2017 06:29:00
- Last modified 20.04.2025 01:37:25
An issue was discovered in Cloud Foundry Foundation cf-release versions prior to v261; UAA release 2.x versions prior to v2.7.4.17, 3.6.x versions prior to v3.6.11, 3.9.x versions prior to v3.9.13, and other versions prior to v4.2.0; and UAA bosh rel...
CVE-2017-4974
- EPSS 0.28%
- Published 13.06.2017 06:29:00
- Last modified 20.04.2025 01:37:25
An issue was discovered in Cloud Foundry Foundation cf-release versions prior to v258; UAA release 2.x versions prior to v2.7.4.15, 3.6.x versions prior to v3.6.9, 3.9.x versions prior to v3.9.11, and other versions prior to v3.16.0; and UAA bosh rel...
CVE-2017-4973
- EPSS 0.31%
- Published 13.06.2017 06:29:00
- Last modified 20.04.2025 01:37:25
An issue was discovered in Cloud Foundry Foundation cf-release versions prior to v257; UAA release 2.x versions prior to v2.7.4.14, 3.6.x versions prior to v3.6.8, 3.9.x versions prior to v3.9.10, and other versions prior to v3.15.0; and UAA bosh rel...
CVE-2017-4972
- EPSS 0.28%
- Published 13.06.2017 06:29:00
- Last modified 20.04.2025 01:37:25
An issue was discovered in Cloud Foundry Foundation cf-release versions prior to v257; UAA release 2.x versions prior to v2.7.4.14, 3.6.x versions prior to v3.6.8, 3.9.x versions prior to v3.9.10, and other versions prior to v3.15.0; and UAA bosh rel...
CVE-2017-4963
- EPSS 0.39%
- Published 13.06.2017 06:29:00
- Last modified 20.04.2025 01:37:25
An issue was discovered in Cloud Foundry Foundation Cloud Foundry release v252 and earlier versions, UAA stand-alone release v2.0.0 - v2.7.4.12 & v3.0.0 - v3.11.0, and UAA bosh release v26 & earlier versions. UAA is vulnerable to session fixation whe...