RSS   Vulnerabilities for 'Bosh stemcell'   RSS

2017-05-25
 
CVE-2016-4435

 

 
An endpoint of the Agent running on the BOSH Director VM with stemcell versions prior to 3232.6 and 3146.13 may allow unauthenticated clients to read or write blobs or cause a denial of service attack on the Director VM. This vulnerability requires that the unauthenticated clients guess or find a URL matching an existing GUID.

 

 >>> Vendor: Pivotal 22 Products
Spring framework
Cloud foundry elastic runtime
Operations manager
Rabbitmq
Spring security oauth
Spring web flow
Pcf tile generator
UAA
Elastic runtime
Uaa-release
Cloud foundry
Bosh stemcell
Cf-release
Routing-release
Capi-release
Uaa bosh
Spring-flex
Cloud foundry php buildpack
Tc runtimes
Tc server
Reactor netty
Vmware harbor registry


Copyright 2024, cxsecurity.com

 

Back to Top