CVE Published: 17/09/2018 |
CVE Updated: 17/09/2024 |
CVE Year: 2018 Source: dell |
Vendor: Pivotal |
Product: Application Service Status : PUBLISHED
CVE-2018-11088 Description
Pivotal Applications Manager in Pivotal Application Service, versions 2.0 prior to 2.0.21 and 2.1 prior to 2.1.13 and 2.2 prior to 2.2.5, contains a bug which may allow escalation of privileges. A space developer with access to the system org may be able to access an artifact which contains the CF admin credential, allowing them to escalate to an admin role.