Known Vulnerabilities for Cloud Foundry Elastic Runtime by Pivotal Software
Listed below are 10 of the newest known vulnerabilities associated with "Cloud Foundry Elastic Runtime" by "Pivotal Software".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2017-4959 json | An issue was discovered in Pivotal PCF Elastic Runtime 1.8.x versions prior to 1.8.29 and 1.9.x versions prior to 1.9.7. Pivo... | 8.8 - HIGH | 2017-06-13 | 2019-10-03 |
| CVE-2017-4955 json | An issue was discovered in Pivotal PCF Elastic Runtime 1.6.x versions prior to 1.6.65, 1.7.x versions prior to 1.7.48, 1.8.x ... | 9.8 - CRITICAL | 2017-06-13 | 2019-10-03 |
| CVE-2017-2773 json | An issue was discovered in Pivotal PCF Elastic Runtime 1.6.x versions prior to 1.6.60, 1.7.x versions prior to 1.7.41, 1.8.x ... | 9.8 - CRITICAL | 2017-06-13 | 2017-07-03 |
| CVE-2016-6658 json | Applications in cf-release before 245 can be configured and pushed with a user-provided custom buildpack using a URL pointing... | 9.6 - CRITICAL | 2018-03-29 | 2018-04-24 |
| CVE-2016-6657 json | An open redirect vulnerability has been detected with some Pivotal Cloud Foundry Elastic Runtime components. Users of affecte... | 7.4 - HIGH | 2016-12-16 | 2016-12-22 |
| CVE-2016-6651 json | The UAA /oauth/token endpoint in Pivotal Cloud Foundry (PCF) before 243; UAA 2.x before 2.7.4.8, 3.x before 3.3.0.6, and 3.4.... | 8.8 - HIGH | 2016-09-30 | 2021-08-06 |
| CVE-2016-6637 json | Multiple cross-site request forgery (CSRF) vulnerabilities in Pivotal Cloud Foundry (PCF) before 242; UAA 2.x before 2.7.4.7,... | 9.6 - CRITICAL | 2016-09-30 | 2021-08-06 |
| CVE-2016-6636 json | The OAuth authorization implementation in Pivotal Cloud Foundry (PCF) before 242; UAA 2.x before 2.7.4.7, 3.x before 3.3.0.5,... | 5.3 - MEDIUM | 2016-09-30 | 2021-08-06 |
| CVE-2016-5016 json | Pivotal Cloud Foundry 239 and earlier, UAA (aka User Account and Authentication Server) 3.4.1 and earlier, UAA release 12.2 a... | 5.9 - MEDIUM | 2017-04-24 | 2019-02-26 |
| CVE-2016-5006 json | The Cloud Controller in Cloud Foundry before 239 logs user-provided service objects at creation, which allows attackers to ob... | 9.8 - CRITICAL | 2017-05-02 | 2017-05-11 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Pivotal Software | Cloud Foundry Elastic Runtime | 1.8.9 | |||
| Application | Pivotal Software | Cloud Foundry Elastic Runtime | 1.8.8 | |||
| Application | Pivotal Software | Cloud Foundry Elastic Runtime | 1.8.7 | |||
| Application | Pivotal Software | Cloud Foundry Elastic Runtime | 1.8.6 | |||
| Application | Pivotal Software | Cloud Foundry Elastic Runtime | 1.8.5 | |||
| Application | Pivotal Software | Cloud Foundry Elastic Runtime | 1.8.4 | |||
| Application | Pivotal Software | Cloud Foundry Elastic Runtime | 1.8.3 | |||
| Application | Pivotal Software | Cloud Foundry Elastic Runtime | 1.8.2 | |||
| Application | Pivotal Software | Cloud Foundry Elastic Runtime | 1.8.12 | |||
| Application | Pivotal Software | Cloud Foundry Elastic Runtime | 1.8.11 | |||
| Application | Pivotal Software | Cloud Foundry Elastic Runtime | 1.8.10 | |||
| Application | Pivotal Software | Cloud Foundry Elastic Runtime | 1.8.1 | |||
| Application | Pivotal Software | Cloud Foundry Elastic Runtime | 1.8.0 | |||
| Application | Pivotal Software | Cloud Foundry Elastic Runtime | 1.7.9 | |||
| Application | Pivotal Software | Cloud Foundry Elastic Runtime | 1.7.8 | |||
| Application | Pivotal Software | Cloud Foundry Elastic Runtime | 1.7.7 | |||
| Application | Pivotal Software | Cloud Foundry Elastic Runtime | 1.7.6 | |||
| Application | Pivotal Software | Cloud Foundry Elastic Runtime | 1.7.5 | |||
| Application | Pivotal Software | Cloud Foundry Elastic Runtime | 1.7.47 | |||
| Application | Pivotal Software | Cloud Foundry Elastic Runtime | 1.7.46 |