Логотип exploitDog
bind:CVE-2019-11270
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-11270

Количество 2

Количество 2

nvd логотип

CVE-2019-11270

больше 6 лет назад

Cloud Foundry UAA versions prior to v73.4.0 contain a vulnerability where a malicious client possessing the 'clients.write' authority or scope can bypass the restrictions imposed on clients created via 'clients.write' and create clients with arbitrary scopes that the creator does not possess.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-cgmm-ggpv-874w

больше 3 лет назад

Cloud Foundry UAA versions prior to v73.4.0 contain a vulnerability where a malicious client possessing the ?clients.write? authority or scope can bypass the restrictions imposed on clients created via ?clients.write? and create clients with arbitrary scopes that he does not possess.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2019-11270

Cloud Foundry UAA versions prior to v73.4.0 contain a vulnerability where a malicious client possessing the 'clients.write' authority or scope can bypass the restrictions imposed on clients created via 'clients.write' and create clients with arbitrary scopes that the creator does not possess.

CVSS3: 7.5
0%
Низкий
больше 6 лет назад
github логотип
GHSA-cgmm-ggpv-874w

Cloud Foundry UAA versions prior to v73.4.0 contain a vulnerability where a malicious client possessing the ?clients.write? authority or scope can bypass the restrictions imposed on clients created via ?clients.write? and create clients with arbitrary scopes that he does not possess.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу