An issue was discovered in the Cloud Controller API in Cloud Foundry Foundation CAPI-release versions after v1.6.0 and prior to v1.35.0 and cf-release versions after v244 and prior to v268. A carefully crafted CAPI request from a Space Developer can allow them to gain access to files on the Cloud Controller VM for that installation.
Advisories
Source ID Title
EUVD EUVD EUVD-2017-17002 An issue was discovered in the Cloud Controller API in Cloud Foundry Foundation CAPI-release versions after v1.6.0 and prior to v1.35.0 and cf-release versions after v244 and prior to v268. A carefully crafted CAPI request from a Space Developer can allow them to gain access to files on the Cloud Controller VM for that installation.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published:

Updated: 2024-08-05T16:19:29.718Z

Reserved: 2017-04-21T00:00:00

Link: CVE-2017-8035

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2017-07-25T04:29:00.257

Modified: 2025-04-20T01:37:25.860

Link: CVE-2017-8035

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.