Back to search
CVE-2018-1268
Published: Jun 6, 2018
Modified: Sep 17, 2024
PUBLISHED
Description
Cloud Foundry Loggregator, versions 89.x prior to 89.5 or 96.x prior to 96.1 or 99.x prior to 99.1 or 101.x prior to 101.9 or 102.x prior to 102.2, does not validate app GUID structure in requests. A remote authenticated malicious user knowing the GUID of an app may construct malicious requests to read from or write to the logs of that app.
| Vendor | Product | Versions |
|---|---|---|
Cloud Foundry | Loggregator | affected 89.x - < 89.5affected 96.x - < 96.1affected 99.x - < 99.1affected 101.x - < 101.9affected 102.x - < 102.2 |
References
https://www.cloudfoundry.org/blog/cve-2018-1268
x_refsource_CONFIRM
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now