Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Applications deployed to Cloud Foundry, versions v166 through v227, may be vulnerable to a remote disclosure of information, including, but not limited to environment variables and bound service details. For applications to be vulnerable, they must have been staged using automatic buildpack detection, passed through the Java Buildpack detection script, and allow the serving of static content from within the deployed artifact. The default Apache Tomcat configuration in the affected java buildpack versions for some basic web application archive (WAR) packaged applications are vulnerable to this issue.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cloud Foundry和Cloud Foundry Java Buildpack 信息泄露漏洞
Vulnerability Description
Cloud Foundry和Cloud Foundry Java Buildpack都是美国Cloud Foundry基金会的产品。Cloud Foundry是一套开源的平台即服务(PaaS)云计算平台,它提供容器调度、持续交付和自动化服务部署等功能。Cloud Foundry Java Buildpack是一套用于运行Java应用程序的环境。 Cloud Foundry 166版本至227版本和Cloud Foundry Java Buildpack 2.0版本至3.4版本中存在信息泄露漏洞。攻击者可利
CVSS Information
N/A
Vulnerability Type
N/A