6.5
CVSSv2

CVE-2017-4959

Published: 13/06/2017 Updated: 03/10/2019
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 578
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

An issue exists in Pivotal PCF Elastic Runtime 1.8.x versions before 1.8.29 and 1.9.x versions before 1.9.7. Pivotal Cloud Foundry deployments using the Pivotal Account application are vulnerable to a flaw which allows an authorized user to take over the account of another user, causing account lockout and potential escalation of privileges.

Vulnerable Product Search on Vulmon Subscribe to Product

pivotal software cloud foundry elastic runtime 1.8.2

pivotal software cloud foundry elastic runtime 1.8.7

pivotal software cloud foundry elastic runtime 1.8.9

pivotal software cloud foundry elastic runtime 1.8.11

pivotal software cloud foundry elastic runtime 1.8.16

pivotal software cloud foundry elastic runtime 1.8.18

pivotal software cloud foundry elastic runtime 1.8.25

pivotal software cloud foundry elastic runtime 1.8.27

pivotal software cloud foundry elastic runtime 1.8.12

pivotal software cloud foundry elastic runtime 1.8.13

pivotal software cloud foundry elastic runtime 1.8.14

pivotal software cloud foundry elastic runtime 1.8.15

pivotal software cloud foundry elastic runtime 1.8.28

pivotal software cloud foundry elastic runtime 1.8.0

pivotal software cloud foundry elastic runtime 1.8.3

pivotal software cloud foundry elastic runtime 1.8.4

pivotal software cloud foundry elastic runtime 1.8.5

pivotal software cloud foundry elastic runtime 1.8.6

pivotal software cloud foundry elastic runtime 1.8.20

pivotal software cloud foundry elastic runtime 1.8.21

pivotal software cloud foundry elastic runtime 1.8.22

pivotal software cloud foundry elastic runtime 1.8.23

pivotal software cloud foundry elastic runtime 1.8.1

pivotal software cloud foundry elastic runtime 1.8.8

pivotal software cloud foundry elastic runtime 1.8.10

pivotal software cloud foundry elastic runtime 1.8.17

pivotal software cloud foundry elastic runtime 1.8.19

pivotal software cloud foundry elastic runtime 1.8.24

pivotal software cloud foundry elastic runtime 1.8.26

pivotal software cloud foundry elastic runtime 1.9.1

pivotal software cloud foundry elastic runtime 1.9.3

pivotal software cloud foundry elastic runtime 1.9.4

pivotal software cloud foundry elastic runtime 1.9.5

pivotal software cloud foundry elastic runtime 1.9.6

pivotal software cloud foundry elastic runtime 1.9.2

pivotal software cloud foundry elastic runtime 1.9.0