Pivotal Usage Service in Pivotal Application Service, versions 2.0 prior to 2.0.21 and 2.1 prior to 2.1.13 and 2.2 prior to 2.2.5, contains a bug which may allow escalation of privileges. A space developer with access to the system org may be able to access an artifact which contains the CF admin credential, allowing them to escalate to an admin role.
References
Link | Resource |
---|---|
https://pivotal.io/security/cve-2018-11086 | Mitigation Vendor Advisory |
https://pivotal.io/security/cve-2018-11086 | Mitigation Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 03:42
Type | Values Removed | Values Added |
---|---|---|
References | () https://pivotal.io/security/cve-2018-11086 - Mitigation, Vendor Advisory |
Information
Published : 2018-09-17 16:29
Updated : 2024-11-21 03:42
NVD link : CVE-2018-11086
Mitre link : CVE-2018-11086
CVE.ORG link : CVE-2018-11086
JSON object : View
Products Affected
pivotal_software
- pivotal_application_service
CWE