Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-38806

Опубликовано: 18 июл. 2024
Источник: nvd
CVSS3: 3.9
EPSS Низкий

Описание

Failure to properly synchronize user's permissions in UAA in Cloud Foundry Foundation v40.17.0 https://github.com/cloudfoundry/cf-deployment/releases/tag/v40.17.0 , potentially resulting in users retaining access rights they should not have. This can allow them to perform operations beyond their intended permissions.

EPSS

Процентиль: 8%
0.00031
Низкий

3.9 Low

CVSS3

Дефекты

CWE-440

Связанные уязвимости

CVSS3: 3.9
github
больше 1 года назад

Failure to properly synchronize user's permissions in UAA in Cloud Foundry Foundation v40.17.0 https://github.com/cloudfoundry/cf-deployment/releases/tag/v40.17.0 , potentially resulting in users retaining access rights they should not have. This can allow them to perform operations beyond their intended permissions.

EPSS

Процентиль: 8%
0.00031
Низкий

3.9 Low

CVSS3

Дефекты

CWE-440