|
248451
|
7.8 |
HIGH
Local
|
pivotal_software vmware debian
|
rabbitmq debian_linux
|
An issue was discovered in these Pivotal RabbitMQ versions: all 3.4.x versions, all 3.5.x versions, and 3.6.x versions prior to 3.6.9; and these RabbitMQ for PCF versions: all 1.5.x versions, 1.6.x v…
|
CWE-200
Information Exposure
|
CVE-2017-4966
|
2024-11-21 12:26 |
2017-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248452
|
9.8 |
CRITICAL
Network
|
pivotal_software cloudfoundry
|
cloud_foundry_uaa cloud_foundry_uaa_bosh cf-release
|
An issue was discovered in Cloud Foundry Foundation cf-release versions prior to v261; UAA release 2.x versions prior to v2.7.4.17, 3.6.x versions prior to v3.6.11, 3.9.x versions prior to v3.9.13, a…
|
CWE-269
Improper Privilege Management
|
CVE-2017-4992
|
2024-11-21 12:26 |
2017-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248453
|
7.2 |
HIGH
Network
|
pivotal_software cloudfoundry
|
cloud_foundry_uaa cloud_foundry_uaa_bosh cf-release
|
An issue was discovered in Cloud Foundry Foundation cf-release versions prior to v260; UAA release 2.x versions prior to v2.7.4.16, 3.6.x versions prior to v3.6.10, 3.9.x versions prior to v3.9.12, a…
|
CWE-269
Improper Privilege Management
|
CVE-2017-4991
|
2024-11-21 12:26 |
2017-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248454
|
6.5 |
MEDIUM
Network
|
pivotal_software cloudfoundry
|
cloud_foundry_uaa cloud_foundry_uaa_bosh cf-release
|
An issue was discovered in Cloud Foundry Foundation cf-release versions prior to v258; UAA release 2.x versions prior to v2.7.4.15, 3.6.x versions prior to v3.6.9, 3.9.x versions prior to v3.9.11, an…
|
CWE-89
SQL Injection
|
CVE-2017-4974
|
2024-11-21 12:26 |
2017-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248455
|
8.8 |
HIGH
Network
|
pivotal_software cloudfoundry
|
cloud_foundry_uaa cloud_foundry_cf cloud_foundry_uaa_bosh
|
An issue was discovered in Cloud Foundry Foundation cf-release versions prior to v257; UAA release 2.x versions prior to v2.7.4.14, 3.6.x versions prior to v3.6.8, 3.9.x versions prior to v3.9.10, an…
|
CWE-269
Improper Privilege Management
|
CVE-2017-4973
|
2024-11-21 12:26 |
2017-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248456
|
7.5 |
HIGH
Network
|
pivotal_software cloudfoundry
|
cloud_foundry_uaa cloud_foundry_uaa_bosh cf-release
|
An issue was discovered in Cloud Foundry Foundation cf-release versions prior to v257; UAA release 2.x versions prior to v2.7.4.14, 3.6.x versions prior to v3.6.8, 3.9.x versions prior to v3.9.10, an…
|
CWE-89
SQL Injection
|
CVE-2017-4972
|
2024-11-21 12:26 |
2017-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248457
|
5.9 |
MEDIUM
Network
|
cloudfoundry
|
cf-release staticfile_buildpack
|
An issue was discovered in Cloud Foundry Foundation cf-release v255 and Staticfile buildpack versions v1.4.0 - v1.4.3. A regression introduced in the Static file build pack causes the Staticfile.auth…
|
NVD-CWE-noinfo
|
CVE-2017-4970
|
2024-11-21 12:26 |
2017-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248458
|
6.1 |
MEDIUM
Network
|
pivotal_software vmware debian
|
rabbitmq debian_linux
|
An issue was discovered in these Pivotal RabbitMQ versions: all 3.4.x versions, all 3.5.x versions, and 3.6.x versions prior to 3.6.9; and these RabbitMQ for PCF versions: all 1.5.x versions, 1.6.x v…
|
CWE-79
Cross-site Scripting
|
CVE-2017-4965
|
2024-11-21 12:26 |
2017-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248459
|
8.1 |
HIGH
Network
|
pivotal_software
|
cloud_foundry_uaa cloud_foundry_cf-release cloud_foundry_uaa-release
|
An issue was discovered in Cloud Foundry Foundation Cloud Foundry release v252 and earlier versions, UAA stand-alone release v2.0.0 - v2.7.4.12 & v3.0.0 - v3.11.0, and UAA bosh release v26 & earlier …
|
CWE-384
Session Fixation
|
CVE-2017-4963
|
2024-11-21 12:26 |
2017-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248460
|
8.8 |
HIGH
Network
|
cloud_foundry
|
bosh
|
An issue was discovered in Cloud Foundry Foundation BOSH Release 261.x versions prior to 261.3 and all 260.x versions. In certain cases an authenticated Director user can provide a malicious checksum…
|
CWE-354
Improper Validation of Integrity Check Value
|
CVE-2017-4961
|
2024-11-21 12:26 |
2017-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|