Total vulnerabilities in the database
Cloud Foundry UAA, versions prior to v70.0, allows a user to update their own email address. A remote authenticated user can impersonate a different user by changing their email address to that of a different user.
Software | From | Fixed in |
---|---|---|
cloudfoundry / uaa_release | - | 70.0 |