Cloud Foundry CAPI是美国Cloud Foundry基金会的一个云控制器。 Cloud Foundry CAPI 1.140 到 1.152.0版本、Loggregator-agent v7+、CF Deployment 24.7.0 到 29.0.0版本存在安全漏洞,该漏洞源于Cloud foundry 实例以及 loggregator-agent v7+ 可能会覆盖其他用户的 syslog drain 凭据,攻击者利用该漏洞可以覆盖私钥并添加或修改用于连接的证书颁发机构。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | Cloud Controller API | Cloud Foundry cloud controller API versions between 1.140 and 1.152.0 and loggregator-agent v7+ | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-30199 | 7.5 HIGH | Prestashop 路径遍历漏洞 |
| CVE-2023-33240 | Foxit PDF Reader 和 Editor 安全漏洞 | |
| CVE-2023-31862 | JIZHICMS 跨站脚本漏洞 | |
| CVE-2023-31756 | TP-Link Archer VR1600V 操作系统命令注入漏洞 | |
| CVE-2023-26818 | Telegram 安全漏洞 | |
| CVE-2022-30114 | Fastweb FASTGate 缓冲区错误漏洞 | |
| CVE-2023-30775 | LibTIFF 缓冲区错误漏洞 | |
| CVE-2023-30774 | LibTIFF 缓冲区错误漏洞 | |
| CVE-2023-31757 | Desdev DedeCMS 跨站脚本漏洞 | |
| CVE-2023-31707 | SEMCMS SQL注入漏洞 |
No comments yet