7.5
CVSSv2

CVE-2016-9880

Published: 16/03/2018 Updated: 10/04/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The GemFire broker for Cloud Foundry 1.6.x prior to 1.6.5 and 1.7.x prior to 1.7.1 has multiple API endpoints which do not require authentication and could be used to gain access to the cluster managed by the broker.

Vulnerable Product Search on Vulmon Subscribe to Product

pivotal software gemfire for pivotal cloud foundry

pivotal software gemfire for pivotal cloud foundry 1.7.0