CyberSec.Space Logo
Back to CVE Browser

CVE-2018-15795

HIGH
8.1
CVSS Severity Score
EPSS Score0.0000%
EPSS Percentile15.08th
PublishedNov 13, 2018
Last ModifiedNov 21, 2024

Vulnerability Description

Pivotal CredHub Service Broker, versions prior to 1.1.0, uses a guessable form of random number generation in creating service broker's UAA client. A remote malicious user may guess the client secret and obtain or modify credentials for users of the CredHub Service.

Affected Platforms (CPE)

πŸ“¦
Pivotal Software

Credhub Service Broker

< 1.1.0

References & Advisories

Related Vulnerabilities