Total vulnerabilities in the database
Pivotal Cloud Foundry (PCF) Elastic Runtime before 1.6.34 and 1.7.x before 1.7.12 places 169.254.0.0/16 in the all_open Application Security Group, which might allow remote attackers to bypass intended network-connectivity restrictions by leveraging access to the 169.254.169.254 address.
Software | From | Fixed in |
---|---|---|
pivotal_software / cloud_foundry_elastic_runtime | 1.7.6 | 1.7.6.x |
pivotal_software / cloud_foundry_elastic_runtime | 1.7.1 | 1.7.1.x |
pivotal_software / cloud_foundry_elastic_runtime | 1.7.10 | 1.7.10.x |
pivotal_software / cloud_foundry_elastic_runtime | 1.7.4 | 1.7.4.x |
pivotal_software / cloud_foundry_elastic_runtime | 1.7.11 | 1.7.11.x |
pivotal_software / cloud_foundry_elastic_runtime | 1.7.7 | 1.7.7.x |
pivotal_software / cloud_foundry_elastic_runtime | 1.7.0 | 1.7.0.x |
pivotal_software / cloud_foundry_elastic_runtime | 1.7.8 | 1.7.8.x |
pivotal_software / cloud_foundry_elastic_runtime | 1.7.5 | 1.7.5.x |
pivotal_software / cloud_foundry_elastic_runtime | 1.7.9 | 1.7.9.x |
pivotal_software / cloud_foundry_elastic_runtime | - | 1.6.33.x |
pivotal_software / cloud_foundry_elastic_runtime | 1.7.3 | 1.7.3.x |
pivotal_software / cloud_foundry_elastic_runtime | 1.7.2 | 1.7.2.x |