Vulnerabilities > Pivotal Software > Cloudfoundry UAA Release > Medium

DATE CVE VULNERABILITY TITLE RISK
2018-11-19 CVE-2018-15761 Unspecified vulnerability in Pivotal Software Cloud Foundry UAA and Cloudfoundry UAA Release
Cloud Foundry UAA release, versions prior to v64.0, and UAA, versions prior to 4.23.0, contains a validation error which allows for privilege escalation.
network
low complexity
pivotal-software
6.5
2018-10-05 CVE-2018-11082 Improper Restriction of Excessive Authentication Attempts vulnerability in Pivotal Software Cloudfoundry UAA and Cloudfoundry UAA Release
Cloud Foundry UAA, all versions prior to 4.20.0 and Cloud Foundry UAA Release, all versions prior to 61.0, allows brute forcing of MFA codes.
network
low complexity
pivotal-software CWE-307
5.0