Vulnerabilities > Pivotal Software > Pivotal Application Service > 2.5.3

DATE CVE VULNERABILITY TITLE RISK
2019-09-20 CVE-2019-11280 Improper Privilege Management vulnerability in Pivotal Software Pivotal Application Service
Pivotal Apps Manager, included in Pivotal Application Service versions 2.3.x prior to 2.3.18, 2.4.x prior to 2.4.14, 2.5.x prior to 2.5.10, and 2.6.x prior to 2.6.5, contains an invitations microservice which allows users to invite others to their organizations.
network
low complexity
pivotal-software CWE-269
8.8