NA

CVE-2023-34041

Published: 08/09/2023 Updated: 14/09/2023
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Cloud foundry routing release versions before 0.278.0 are vulnerable to abuse of HTTP Hop-by-Hop Headers. An unauthenticated attacker can use this vulnerability for headers like B3 or X-B3-SpanID to affect the identification value recorded in the logs in foundations.

Vulnerable Product Search on Vulmon Subscribe to Product

cloudfoundry routing-release

cloudfoundry cf-deployment