Cloud Foundry Foundation BOSH是Cloud Foundry Foundation基金会的开源PaaS平台。 Cloud Foundry Foundation BOSH 7.10.4之前版本存在命令注入漏洞,该漏洞源于参数注入问题,可能导致攻击者通过已妥协的BOSH Director向本地生成的ssh进程注入任意OpenSSH选项,从而导致在操作员的工作站上执行本地命令。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| CloudFoundry Foundation | bosh-cli | < 7.10.4 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| CloudFoundry Foundation | bosh-cli | 0 ~ 7.10.4 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-47840 | 7.5 HIGH | LDAP StartTLS unconditionally disables hostname verification |
| CVE-2026-47826 | blobs.yaml Path Traversal Allows File Writes |
No comments yet