Vulnerabilities > Pivotal > Bosh Stemcell > Critical

DATE CVE VULNERABILITY TITLE RISK
2017-05-25 CVE-2016-4435 Permissions, Privileges, and Access Controls vulnerability in Pivotal Bosh Stemcell 3146.13/3232.4
An endpoint of the Agent running on the BOSH Director VM with stemcell versions prior to 3232.6 and 3146.13 may allow unauthenticated clients to read or write blobs or cause a denial of service attack on the Director VM.
network
high complexity
pivotal CWE-264
critical
9.0