PT-2023-10355 · Unknown · Deis Workflow Manager

Published

2023-12-23

·

Updated

2024-08-21

·

CVE-2016-15036

CVSS v3.1

4.6

Medium

VectorAV:A/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Deis Workflow Manager versions up to 2.3.2
Description A vulnerability was found in Deis Workflow Manager, which has been classified as problematic. This issue affects an unknown part of the system and leads to a race condition. The complexity of an attack is rather high, and the exploitability is told to be difficult.
Recommendations Upgrading to version 2.3.3 is able to address this issue. It is recommended to upgrade the affected component.

Fix

Race Condition

Weakness Enumeration

Related Identifiers

CVE-2016-15036
GHSA-JPFP-XQ3P-4H3R
GO-2023-2422

Affected Products

Deis Workflow Manager