Логотип exploitDog
bind:CVE-2018-15755
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-15755

Количество 2

Количество 2

nvd логотип

CVE-2018-15755

больше 7 лет назад

Cloud Foundry CF Networking Release, versions 2.11.0 prior to 2.16.0, contain an internal api endpoint vulnerable to SQL injection between Diego cells and the policy server. A remote authenticated malicious user with mTLS certs can issue arbitrary SQL queries and gain access to the policy server.

CVSS3: 6.6
EPSS: Низкий
github логотип

GHSA-m392-rj9c-4gwh

больше 3 лет назад

Cloud Foundry CF Networking Release, versions 2.11.0 prior to 2.16.0, contain an internal api endpoint vulnerable to SQL injection between Diego cells and the policy server. A remote authenticated malicious user with mTLS certs can issue arbitrary SQL queries and gain access to the policy server.

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-15755

Cloud Foundry CF Networking Release, versions 2.11.0 prior to 2.16.0, contain an internal api endpoint vulnerable to SQL injection between Diego cells and the policy server. A remote authenticated malicious user with mTLS certs can issue arbitrary SQL queries and gain access to the policy server.

CVSS3: 6.6
1%
Низкий
больше 7 лет назад
github логотип
GHSA-m392-rj9c-4gwh

Cloud Foundry CF Networking Release, versions 2.11.0 prior to 2.16.0, contain an internal api endpoint vulnerable to SQL injection between Diego cells and the policy server. A remote authenticated malicious user with mTLS certs can issue arbitrary SQL queries and gain access to the policy server.

CVSS3: 8.8
1%
Низкий
больше 3 лет назад

Уязвимостей на страницу