CVE Vulnerabilities

CVE-2016-0897

Published: Sep 18, 2016 | Modified: Apr 12, 2025
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Pivotal Cloud Foundry (PCF) Ops Manager before 1.6.17 and 1.7.x before 1.7.8, when vCloud or vSphere is used, does not properly enable SSH access for operators, which has unspecified impact and remote attack vectors.

Affected Software

NameVendorStart VersionEnd Version
Operations_managerPivotal_software*1.6.16 (including)
Operations_managerPivotal_software1.7.0 (including)1.7.0 (including)
Operations_managerPivotal_software1.7.1 (including)1.7.1 (including)
Operations_managerPivotal_software1.7.2 (including)1.7.2 (including)
Operations_managerPivotal_software1.7.3 (including)1.7.3 (including)
Operations_managerPivotal_software1.7.4 (including)1.7.4 (including)
Operations_managerPivotal_software1.7.5 (including)1.7.5 (including)
Operations_managerPivotal_software1.7.6 (including)1.7.6 (including)
Operations_managerPivotal_software1.7.7 (including)1.7.7 (including)

References