Vulnerabilities (CVE)

Filtered by vendor Pivotal Software Subscribe
Filtered by product Credhub Service Broker
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-15795 1 Pivotal Software 1 Credhub Service Broker 2024-11-21 5.5 MEDIUM 8.1 HIGH
Pivotal CredHub Service Broker, versions prior to 1.1.0, uses a guessable form of random number generation in creating service broker's UAA client. A remote malicious user may guess the client secret and obtain or modify credentials for users of the CredHub Service.