Pivotal Gemfire for PCF, versions 1.6.x prior to 1.6.5.0 and 1.7.x prior to 1.7.1.0, contain an information disclosure vulnerability. The application inadvertently exposed WAN replication credentials at a public route.
References
Link | Resource |
---|---|
https://docs.pivotal.io/gemfire-cf/relnotes.html | Vendor Advisory |
https://docs.pivotal.io/gemfire-cf/relnotes.html | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 02:59
Type | Values Removed | Values Added |
---|---|---|
References | () https://docs.pivotal.io/gemfire-cf/relnotes.html - Vendor Advisory |
Information
Published : 2018-04-18 16:29
Updated : 2024-11-21 02:59
NVD link : CVE-2016-8220
Mitre link : CVE-2016-8220
CVE.ORG link : CVE-2016-8220
JSON object : View
Products Affected
pivotal_software
- gemfire
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor