pivotalsoftware cloudfoundry-uaa-release CVE-2018-15761 vulnerability in Pivotal Software Products
Published on November 19, 2018

UAA Privilege Escalation
Cloud Foundry UAA release, versions prior to v64.0, and UAA, versions prior to 4.23.0, contains a validation error which allows for privilege escalation. A remote authenticated user may modify the url and content of a consent page to gain a token with arbitrary scopes that escalates their privileges.

NVD


Products Associated with CVE-2018-15761

stack.watch emails you whenever new vulnerabilities are published in Pivotal Software Cloudfoundry Uaa Release or Pivotal Software Cloud Foundry Uaa. Just hit a watch button to start following.

 
 

Affected Versions

Cloud Foundry UAA: Cloud Foundry UAA Release:

Exploit Probability

EPSS
0.53%
Percentile
66.93%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.