Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3r76-7gpf-jq4w

Опубликовано: 18 июл. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 3.9

Описание

Failure to properly synchronize user's permissions in UAA in Cloud Foundry Foundation v40.17.0 https://github.com/cloudfoundry/cf-deployment/releases/tag/v40.17.0 , potentially resulting in users retaining access rights they should not have. This can allow them to perform operations beyond their intended permissions.

Failure to properly synchronize user's permissions in UAA in Cloud Foundry Foundation v40.17.0 https://github.com/cloudfoundry/cf-deployment/releases/tag/v40.17.0 , potentially resulting in users retaining access rights they should not have. This can allow them to perform operations beyond their intended permissions.

EPSS

Процентиль: 8%
0.00031
Низкий

3.9 Low

CVSS3

Дефекты

CWE-440

Связанные уязвимости

CVSS3: 3.9
nvd
больше 1 года назад

Failure to properly synchronize user's permissions in UAA in Cloud Foundry Foundation v40.17.0 https://github.com/cloudfoundry/cf-deployment/releases/tag/v40.17.0 , potentially resulting in users retaining access rights they should not have. This can allow them to perform operations beyond their intended permissions.

EPSS

Процентиль: 8%
0.00031
Низкий

3.9 Low

CVSS3

Дефекты

CWE-440