Page 3 of 11 results (0.002 seconds)

CVSS: 7.5EPSS: 0%CPEs: 13EXPL: 0

Pivotal Cloud Foundry (PCF) Elastic Runtime before 1.6.34 and 1.7.x before 1.7.12 places 169.254.0.0/16 in the all_open Application Security Group, which might allow remote attackers to bypass intended network-connectivity restrictions by leveraging access to the 169.254.169.254 address. Pivotal Cloud Foundry (PCF) Elastic Runtime en versiones anteriores a 1.6.34 y 1.7.x en versiones anteriores a 1.7.12 sitúa 169.254.0.0/16 en el all_open Application Security Group, lo que podría permitir a atacantes remotos eludir las restricciones de conectividad de red mediante el aprovechamiento del acceso a la dirección 169.254.169.254. • http://www.securityfocus.com/bid/92161 https://pivotal.io/security/cve-2016-0896 • CWE-254: 7PK - Security Features •