Lucene search

K
osvGoogleOSV:CVE-2018-15754
HistoryDec 13, 2018 - 10:29 p.m.

CVE-2018-15754

2018-12-1322:29:00
Google
osv.dev
7

AI Score

6.4

Confidence

Low

EPSS

0.002

Percentile

61.4%

Cloud Foundry UAA, versions 60 prior to 66.0, contain an authorization logic error. In environments with multiple identity providers that contain accounts across identity providers with the same username, a remote authenticated user with access to one of these accounts may be able to obtain a token for an account of the same username in the other identity provider.

AI Score

6.4

Confidence

Low

EPSS

0.002

Percentile

61.4%

Related for OSV:CVE-2018-15754