Vulnerabilities > Cloud Foundry > Bosh System Metrics Server

DATE CVE VULNERABILITY TITLE RISK
2020-10-02 CVE-2020-5422 Exposure of Resource to Wrong Sphere vulnerability in Cloud Foundry Bosh System Metrics Server
BOSH System Metrics Server releases prior to 0.1.0 exposed the UAA password as a flag to a process running on the BOSH director.
network
low complexity
cloud-foundry CWE-668
4.0