CVE-2024-38806
CVE-2024-38806
Título es
CVE-2024-38806
Jue, 18/07/2024 – 19:15
Tipo
CWE-440
Gravedad 2.0 Txt
Pendiente de análisis
Título en
CVE-2024-38806
Descripción en
Failure to properly synchronize user's permissions in UAA in Cloud Foundry Foundation v40.17.0 https://github.com/cloudfoundry/cf-deployment/releases/tag/v40.17.0 ,
potentially resulting in users retaining access rights they should not
have. This can allow them to perform operations beyond their intended
permissions.
potentially resulting in users retaining access rights they should not
have. This can allow them to perform operations beyond their intended
permissions.
18/07/2024
18/07/2024
Vector CVSS:3.1
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:L/I:L/A:L
Gravedad 3.1 (CVSS 3.1 Base Score)
3.90
Gravedad 3.1 Txt Gravedad 3.1 (CVSS 3.1 Base Score)
LOW
Referencias
Enviar en el boletín
Off
