Description
An issue was discovered in Pivotal PCF Elastic Runtime 1.8.x versions prior to 1.8.29 and 1.9.x versions prior to 1.9.7. Pivotal Cloud Foundry deployments using the Pivotal Account application are vulnerable to a flaw which allows an authorized user to take over the account of another user, causing account lockout and potential escalation of privileges.
Published: 2017-06-13
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2017-14076 An issue was discovered in Pivotal PCF Elastic Runtime 1.8.x versions prior to 1.8.29 and 1.9.x versions prior to 1.9.7. Pivotal Cloud Foundry deployments using the Pivotal Account application are vulnerable to a flaw which allows an authorized user to take over the account of another user, causing account lockout and potential escalation of privileges.
History

No history.

Subscriptions

Pivotal Software Cloud Foundry Elastic Runtime
cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published:

Updated: 2024-08-05T14:47:43.745Z

Reserved: 2016-12-29T00:00:00.000Z

Link: CVE-2017-4959

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2017-06-13T06:29:00.363

Modified: 2025-04-20T01:37:25.860

Link: CVE-2017-4959

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses