Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2704▼ 598 respecto a la semana anterior
Críticas / altas1288▼ 199 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)299▼ 211 respecto a la semana anterior
255 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (8.8) | 1.6% | — | Pivotal Software Cloud Foundry NFS Volume | 5/12/2018 | 17/6/2026 | Cloud Foundry NFS volume release, 1.2.x prior to 1.2.5, 1.5.x prior to 1.5.4, 1.7.x prior to 1.7.3, logs the cf admin username and password when running the nfsbrokerpush BOSH deploy errand. A remote authenticated user with access to BOSH can obtain the admin credentials for the Cloud Foundry Platform through the logs… | |
| Modificada | Alta (8.8) | 1.7% | — | Pivotal Software Cloud Foundry UAAPivotal Software Cloudfoundry UAA Release | 19/11/2018 | 17/6/2026 | Cloud Foundry UAA release, versions prior to v64.0, and UAA, versions prior to 4.23.0, contains a validation error which allows for privilege escalation. A remote authenticated user may modify the url and content of a consent page to gain a token with arbitrary scopes that escalates their privileges. | |
| Modificada | Alta (8.8) | 1.3% | — | Cloud Foundry Cf-networking | 12/10/2018 | 17/6/2026 | Cloud Foundry CF Networking Release, versions 2.11.0 prior to 2.16.0, contain an internal api endpoint vulnerable to SQL injection between Diego cells and the policy server. A remote authenticated malicious user with mTLS certs can issue arbitrary SQL queries and gain access to the policy server. | |
| Modificada | Crítica (9.8) | 1.8% | — | Pivotal Software Cloud Foundry LOG Cache | 5/10/2018 | 17/6/2026 | Cloud Foundry Log Cache, versions prior to 1.1.1, logs its UAA client secret on startup as part of its envstruct report. A remote attacker who has gained access to the Log Cache VM can read this secret, gaining all privileges held by the Log Cache UAA client. In the worst case, if this client is an admin, the attacker… | |
| Modificada | Alta (8.1) | 1.5% | — | Cloud Foundry Bosh | 5/10/2018 | 17/6/2026 | Cloud Foundry BOSH, versions v264 prior to v264.14.0 and v265 prior to v265.7.0 and v266 prior to v266.8.0 and v267 prior to v267.2.0, allows refresh tokens to be as access tokens when using UAA for authentication. A remote attacker with an admin refresh token given by UAA can be used to access BOSH resources without… | |
| Modificada | Crítica (9.8) | 1.1% | — | Pivotal Software Cloudfoundry UAAPivotal Software Cloudfoundry UAA Release | 5/10/2018 | 17/6/2026 | Cloud Foundry UAA, all versions prior to 4.20.0 and Cloud Foundry UAA Release, all versions prior to 61.0, allows brute forcing of MFA codes. A remote unauthenticated malicious user in possession of a valid username and password can brute force MFA to login as the targeted user. | |
| Modificada | Media (6.5) | 1.2% | — | Cloudfoundry Garden-runc | 18/9/2018 | 17/6/2026 | Cloud Foundry Garden-runC release, versions prior to 1.16.1, prevents deletion of some app environments based on file attributes. A remote authenticated malicious user may create and delete apps with crafted file attributes to cause a denial of service for new app instances or scaling up of existing apps. | |
| Modificada | Alta (8.8) | 0.94% | — | Pivotal Cloud Foundry Container Runtime | 17/9/2018 | 17/6/2026 | Cloud Foundry Container Runtime (kubo-release), versions prior to 0.14.0, may leak UAA and vCenter credentials to application logs. A malicious user with the ability to read the application logs could use these credentials to escalate privileges. | |
| Modificada | Media (5.9) | 1.2% | — | Pivotal Software Cloud Foundry Elastic Runtime | 11/9/2018 | 17/6/2026 | Pivotal Cloud Foundry Elastic Runtime version 1.4.0 through 1.4.5, 1.5.0 through 1.5.11 and 1.6.0 through 1.6.11 is vulnerable to a remote information disclosure. It was found that original mitigation configuration instructions provided as part of CVE-2016-0708 were incomplete and could leave PHP Buildpack, Staticfile… | |
| Modificada | Alta (7.5) | 1.1% | — | Pivotal Software Cloud Foundry UAA | 24/7/2018 | 17/6/2026 | Cloud Foundry UAA, versions 4.19 prior to 4.19.2 and 4.12 prior to 4.12.4 and 4.10 prior to 4.10.2 and 4.7 prior to 4.7.6 and 4.5 prior to 4.5.7, incorrectly authorizes requests to admin endpoints by accepting a valid refresh token in lieu of an access token. Refresh tokens by design have a longer expiration time than… | |
| Modificada | Media (5.9) | 1.6% | — | Cloudfoundry Cf-releaseCloudfoundry Java Buildpack | 11/7/2018 | 17/6/2026 | Applications deployed to Cloud Foundry, versions v166 through v227, may be vulnerable to a remote disclosure of information, including, but not limited to environment variables and bound service details. For applications to be vulnerable, they must have been staged using automatic buildpack detection, passed through… | |
| Modificada | Media (6.1) | 0.85% | — | Pivotal Software Cloud Foundry UAAPivotal Software Cloud Foundry Uaa-release | 25/6/2018 | 17/6/2026 | Cloud Foundry UAA, versions later than 4.6.0 and prior to 4.19.0 except 4.10.1 and 4.7.5 and uaa-release versions later than v48 and prior to v60 except v55.1 and v52.9, does not validate redirect URL values on a form parameter used for internal UAA redirects on the login page, allowing open redirects. A remote… | |
| Modificada | Media (6.5) | 1.1% | — | Cloudfoundry Loggregator | 6/6/2018 | 17/6/2026 | Cloud Foundry Loggregator, versions 89.x prior to 89.5 or 96.x prior to 96.1 or 99.x prior to 99.1 or 101.x prior to 101.9 or 102.x prior to 102.2, does not handle errors thrown while constructing certain http requests. A remote authenticated user may construct malicious requests to cause the traffic controller to… | |
| Modificada | Media (6.8) | 1.0% | — | Cloudfoundry Loggregator | 6/6/2018 | 17/6/2026 | Cloud Foundry Loggregator, versions 89.x prior to 89.5 or 96.x prior to 96.1 or 99.x prior to 99.1 or 101.x prior to 101.9 or 102.x prior to 102.2, does not validate app GUID structure in requests. A remote authenticated malicious user knowing the GUID of an app may construct malicious requests to read from or write… | |
| Modificada | Alta (7.2) | 1.8% | — | Cloudfoundry Cf-deploymentPivotal Software Cloud Foundry Diego | 6/6/2018 | 17/6/2026 | Cloud Foundry Diego, release versions prior to 2.8.0, does not properly sanitize file paths in tar and zip files headers. A remote attacker with CF admin privileges can upload a malicious buildpack that will allow a complete takeover of a Diego Cell VM and access to all apps running on that Diego Cell. | |
| Modificada | Media (5.3) | 1.1% | — | Cloudfoundry Cf-deploymentCloudfoundry Routing-release | 23/5/2018 | 17/6/2026 | Cloud Foundry routing-release, versions prior to 0.175.0, lacks sanitization for user-provided X-Forwarded-Proto headers. A remote user can set the X-Forwarded-Proto header in a request to potentially bypass an application requirement to only respond over secure connections. | |
| Modificada | Alta (7.2) | 1.3% | — | Pivotal Software Cloud Foundry UAAPivotal Software Cloud Foundry Uaa-releaseCloudfoundry Cf-deployment | 15/5/2018 | 17/6/2026 | Cloud Foundry Foundation UAA, versions 4.12.X and 4.13.X, introduced a feature which could allow privilege escalation across identity zones for clients performing offline validation. A zone administrator could configure their zone to issue tokens which impersonate another zone, granting up to admin privileges in the… | |
| Modificada | Media (6.5) | 1.1% | — | Cloudfoundry Garden-runcCloudfoundry Cf-deployment | 30/4/2018 | 17/6/2026 | Cloud Foundry Garden-runC, versions prior to 1.13.0, does not correctly enforce disc quotas for Docker image layers. A remote authenticated user may push an app with a malicious Docker image that will consume more space on a Diego cell than allocated in their quota, potentially causing a DoS against the cell. | |
| Modificada | Media (5.3) | 0.97% | — | Cloudfoundry Capi-releaseCloudfoundry Cf-release | 18/4/2018 | 17/6/2026 | Cloud Foundry Cloud Controller, capi-release versions prior to 1.0.0 and cf-release versions prior to v237, contain a business logic flaw. An application developer may create an application with a route that conflicts with a platform service route and receive traffic intended for the service. | |
| Modificada | Crítica (9.6) | 0.87% | — | Cloudfoundry Cf-releasePivotal Software Cloud Foundry Elastic Runtime | 29/3/2018 | 17/6/2026 | Applications in cf-release before 245 can be configured and pushed with a user-provided custom buildpack using a URL pointing to the buildpack. Although it is not recommended, a user can specify a credential in the URL (basic auth or OAuth) to access the buildpack through the CLI. For example, the user could include a… | |
| Modificada | Alta (8.8) | 0.92% | — | Cloudfoundry Cf-deploymentCloudfoundry Garden-runc-release | 29/3/2018 | 17/6/2026 | Cloud Foundry Garden-runC, versions prior to 1.11.0, contains an information exposure vulnerability. A user with access to Garden logs may be able to obtain leaked credentials and perform authenticated actions using those credentials. | |
| Modificada | Alta (8.1) | 0.98% | — | Cloudfoundry Silk-release | 27/3/2018 | 17/6/2026 | Cloud Foundry Silk CNI plugin, versions prior to 0.2.0, contains an improper access control vulnerability. If the platform is configured with an application security group (ASG) that overlaps with the Silk overlay network, any applications can reach any other application on the network regardless of the configured… | |
| Modificada | Alta (8.1) | 1.1% | — | Cloudfoundry Capi-release | 27/3/2018 | 17/6/2026 | Cloud Foundry Cloud Controller, versions prior to 1.52.0, contains information disclosure and path traversal vulnerabilities. An authenticated malicious user can predict the location of application blobs and leverage path traversal to create a malicious application that has the ability to overwrite arbitrary files on… | |
| Modificada | Alta (8.1) | 1.2% | — | Cloudfoundry Cf-deploymentCloudfoundry Routing-release | 19/3/2018 | 17/6/2026 | In cf-deployment before 1.14.0 and routing-release before 0.172.0, the Cloud Foundry Gorouter mishandles WebSocket requests for AWS Application Load Balancers (ALBs) and some other HTTP-aware Load Balancers. A user with developer privileges could use this vulnerability to steal data or cause denial of service. | |
| Modificada | Alta (8.8) | 0.98% | — | Cloudfoundry Capi-releaseCloudfoundry Cf-deploymentCloudfoundry Cf-release | 19/3/2018 | 17/6/2026 | In Cloud Controller versions prior to 1.46.0, cf-deployment versions prior to 1.3.0, and cf-release versions prior to 283, Cloud Controller accepts refresh tokens for authentication where access tokens are expected. This exposes a vulnerability where a refresh token that would otherwise be insufficient to obtain an… |