CVE Database
/

CVE-2018-1268

Back to search

CVE-2018-1268

Published: Jun 6, 2018

Modified: Sep 17, 2024

PUBLISHED

Description

Cloud Foundry Loggregator, versions 89.x prior to 89.5 or 96.x prior to 96.1 or 99.x prior to 99.1 or 101.x prior to 101.9 or 102.x prior to 102.2, does not validate app GUID structure in requests. A remote authenticated malicious user knowing the GUID of an app may construct malicious requests to read from or write to the logs of that app.

VendorProductVersions

Cloud Foundry

Loggregator

affected
89.x - < 89.5
affected
96.x - < 96.1
affected
99.x - < 99.1
affected
101.x - < 101.9
affected
102.x - < 102.2

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now