7.7
CVSSv3

CVE-2020-5420

Published: 03/09/2020 Updated: 11/09/2020
CVSS v2 Base Score: 6.8 | Impact Score: 6.9 | Exploitability Score: 8
CVSS v3 Base Score: 7.7 | Impact Score: 4 | Exploitability Score: 3.1
VMScore: 605
Vector: AV:N/AC:L/Au:S/C:N/I:N/A:C

Vulnerability Summary

Cloud Foundry Routing (Gorouter) versions before 0.206.0 allow a malicious developer with "cf push" access to cause denial-of-service to the CF cluster by pushing an app that returns specially crafted HTTP responses that crash the Gorouters.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cloudfoundry cf-deployment

cloudfoundry gorouter