CVE-2020-5399
Published Feb 12, 2020Cloud Foundry CredHub, versions prior to 2.5.10, connects to a MySQL database without TLS even when configured to use TLS. A malicious user with access to the network between Cred…
Vendor/product archive
2 CVEs tagged to pivotal_software / cloud_foundry_cf-deployment — 0 Critical, 2 High, 0 Medium, 0 Low, 0 Unrated.
Cloud Foundry CredHub, versions prior to 2.5.10, connects to a MySQL database without TLS even when configured to use TLS. A malicious user with access to the network between Cred…
In Cloud Foundry Foundation cf-release versions prior to v285; cf-deployment versions prior to v1.7; UAA 4.5.x versions prior to 4.5.5, 4.8.x versions prior to 4.8.3, and 4.7.x ve…