Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2017-4994 | First vendor Publication | 2017-06-13 |
Vendor | Cve | Last vendor Modification | 2021-08-06 |
Security-Database Scoring CVSS v3
Cvss vector : CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N | |||
---|---|---|---|
Overall CVSS Score | 7.5 | ||
Base Score | 7.5 | Environmental Score | 7.5 |
impact SubScore | 3.6 | Temporal Score | 7.5 |
Exploitabality Sub Score | 3.9 | ||
Attack Vector | Network | Attack Complexity | Low |
Privileges Required | None | User Interaction | None |
Scope | Unchanged | Confidentiality Impact | None |
Integrity Impact | High | Availability Impact | None |
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:L/Au:N/C:N/I:P/A:N) | |||
---|---|---|---|
Cvss Base Score | 5 | Attack Range | Network |
Cvss Impact Score | 2.9 | Attack Complexity | Low |
Cvss Expoit Score | 10 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
An issue was discovered in Cloud Foundry Foundation cf-release versions prior to v263; UAA release 2.x versions prior to v2.7.4.18, 3.6.x versions prior to v3.6.12, 3.9.x versions prior to v3.9.14, and other versions prior to v4.3.0; and UAA bosh release (uaa-release) 13.x versions prior to v13.16, 24.x versions prior to v24.11, 30.x versions prior to 30.4, and other versions prior to v40. There was an issue with forwarded http headers in UAA that could result in account corruption. |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-4994 |
CWE : Common Weakness Enumeration
% | Id | Name |
---|---|---|
100 % | CWE-20 | Improper Input Validation |
CPE : Common Platform Enumeration
Sources (Detail)
Source | Url |
---|---|
CONFIRM | https://www.cloudfoundry.org/cve-2017-4994/ |
Alert History
Date | Informations |
---|---|
2021-08-07 00:23:04 |
|
2021-08-06 21:23:21 |
|
2021-08-06 17:23:00 |
|
2021-05-05 01:26:13 |
|
2021-05-04 13:02:24 |
|
2021-04-22 02:15:27 |
|
2020-05-23 02:06:19 |
|
2020-05-23 01:00:37 |
|
2018-12-18 12:07:52 |
|
2018-06-27 12:03:47 |
|
2017-07-28 12:02:03 |
|
2017-06-26 21:22:34 |
|
2017-06-13 12:03:54 |
|