Cloudfoundry

Cf-release

35 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 4.68%
  • Veröffentlicht 13.06.2017 06:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

An issue was discovered in Cloud Foundry Foundation Cloud Foundry release versions prior to v245 and cf-mysql-release versions prior to v31. A command injection vulnerability was discovered in a common script used by many Cloud Foundry components. A ...

  • EPSS 0.23%
  • Veröffentlicht 13.06.2017 06:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

An issue was discovered in Cloud Foundry Foundation cf-release versions prior to 250 and CAPI-release versions prior to 1.12.0. A user with the SpaceAuditor role is over-privileged with the ability to restage applications. This could cause applicatio...

  • EPSS 0.23%
  • Veröffentlicht 13.06.2017 06:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

An issue was discovered in Cloud Foundry Foundation cf-release v255 and Staticfile buildpack versions v1.4.0 - v1.4.3. A regression introduced in the Static file build pack causes the Staticfile.auth configuration to be ignored when the Static file f...

  • EPSS 0.28%
  • Veröffentlicht 13.06.2017 06:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

An issue was discovered in Cloud Foundry Foundation cf-release versions prior to v257; UAA release 2.x versions prior to v2.7.4.14, 3.6.x versions prior to v3.6.8, 3.9.x versions prior to v3.9.10, and other versions prior to v3.15.0; and UAA bosh rel...

  • EPSS 0.28%
  • Veröffentlicht 13.06.2017 06:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

An issue was discovered in Cloud Foundry Foundation cf-release versions prior to v258; UAA release 2.x versions prior to v2.7.4.15, 3.6.x versions prior to v3.6.9, 3.9.x versions prior to v3.9.11, and other versions prior to v3.16.0; and UAA bosh rel...

  • EPSS 0.28%
  • Veröffentlicht 13.06.2017 06:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

An issue was discovered in Cloud Foundry Foundation cf-release versions prior to v260; UAA release 2.x versions prior to v2.7.4.16, 3.6.x versions prior to v3.6.10, 3.9.x versions prior to v3.9.12, and other versions prior to v3.17.0; and UAA bosh re...

  • EPSS 0.39%
  • Veröffentlicht 13.06.2017 06:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

An issue was discovered in Cloud Foundry Foundation cf-release versions prior to v261; UAA release 2.x versions prior to v2.7.4.17, 3.6.x versions prior to v3.6.11, 3.9.x versions prior to v3.9.13, and other versions prior to v4.2.0; and UAA bosh rel...

  • EPSS 0.26%
  • Veröffentlicht 25.05.2017 17:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The Loggregator Traffic Controller endpoints in cf-release v231 and lower, Pivotal Elastic Runtime versions prior to 1.5.19 AND 1.6.x versions prior to 1.6.20 are not cleansing request URL paths when they are invalid and are returning them in the 404...

  • EPSS 0.39%
  • Veröffentlicht 25.05.2017 17:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

It was discovered that cf-release v231 and lower, Pivotal Cloud Foundry Elastic Runtime 1.5.x versions prior to 1.5.17 and Pivotal Cloud Foundry Elastic Runtime 1.6.x versions prior to 1.6.18 do not properly enforce disk quotas in certain cases. An a...

  • EPSS 0.12%
  • Veröffentlicht 25.05.2017 17:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

With Cloud Foundry Runtime cf-release versions v209 or earlier, UAA Standalone versions 2.2.6 or earlier and Pivotal Cloud Foundry Runtime 1.4.5 or earlier the change_email form in UAA is vulnerable to a CSRF attack. This allows an attacker to trigge...