PT-2017-16226 · Pivotal · Pcf Elastic Runtime

Publicado

2017-06-13

·

Atualizado

2019-10-03

·

CVE-2017-4955

CVSS v3.1

9.8

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Pivotal PCF Elastic Runtime versions prior to 1.6.65 Pivotal PCF Elastic Runtime versions prior to 1.7.48 Pivotal PCF Elastic Runtime versions prior to 1.8.28 Pivotal PCF Elastic Runtime versions prior to 1.9.5
Description An issue was discovered in Pivotal PCF Elastic Runtime where several credentials were present in the logs for the Notifications errand in the PCF Elastic Runtime tile.
Recommendations For versions prior to 1.6.65, update to version 1.6.65 or later. For versions prior to 1.7.48, update to version 1.7.48 or later. For versions prior to 1.8.28, update to version 1.8.28 or later. For versions prior to 1.9.5, update to version 1.9.5 or later.

Correção

Insertion into Log File

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2017-4955

Produtos afetados

Pcf Elastic Runtime