CVE Vulnerabilities

CVE-2016-0897

Published: Sep 18, 2016 | Modified: Oct 03, 2016
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Pivotal Cloud Foundry (PCF) Ops Manager before 1.6.17 and 1.7.x before 1.7.8, when vCloud or vSphere is used, does not properly enable SSH access for operators, which has unspecified impact and remote attack vectors.

Affected Software

Name Vendor Start Version End Version
Operations_manager Pivotal_software * 1.6.16 (including)
Operations_manager Pivotal_software 1.7.0 (including) 1.7.0 (including)
Operations_manager Pivotal_software 1.7.1 (including) 1.7.1 (including)
Operations_manager Pivotal_software 1.7.2 (including) 1.7.2 (including)
Operations_manager Pivotal_software 1.7.3 (including) 1.7.3 (including)
Operations_manager Pivotal_software 1.7.4 (including) 1.7.4 (including)
Operations_manager Pivotal_software 1.7.5 (including) 1.7.5 (including)
Operations_manager Pivotal_software 1.7.6 (including) 1.7.6 (including)
Operations_manager Pivotal_software 1.7.7 (including) 1.7.7 (including)

References