An open redirect vulnerability has been detected with some Pivotal Cloud Foundry Elastic Runtime components. Users of affected versions should apply the following mitigation: Upgrade PCF Elastic Runtime 1.8.x versions to 1.8.12 or later. Upgrade PCF Ops Manager 1.7.x versions to 1.7.18 or later and 1.8.x versions to 1.8.10 or later.
References
Link | Resource |
---|---|
https://pivotal.io/security/cve-2016-6657 | Mitigation Vendor Advisory |
http://www.securityfocus.com/bid/94126 | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Information
Published : 2016-12-16 01:59
Updated : 2016-12-22 09:13
NVD link : CVE-2016-6657
Mitre link : CVE-2016-6657
JSON object : View
CWE
CWE-601
URL Redirection to Untrusted Site ('Open Redirect')
Products Affected
pivotal_software
- cloud_foundry_ops_manager
- cloud_foundry_elastic_runtime