The identity zones feature in Pivotal Cloud Foundry 208 through 229; UAA 2.0.0 through 2.7.3 and 3.0.0; UAA-Release 2 through 4, when configured with multiple identity zones; and Elastic Runtime 1.6.0 through 1.6.13 allows remote authenticated users with privileges in one zone to gain privileges and perform operations on a different zone via unspecified vectors.
References
Link | Resource |
---|---|
https://pivotal.io/security/cve-2016-0732 | Mitigation Vendor Advisory |
https://pivotal.io/security/cve-2016-0732 | Mitigation Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
History
21 Nov 2024, 02:42
Type | Values Removed | Values Added |
---|---|---|
References | () https://pivotal.io/security/cve-2016-0732 - Mitigation, Vendor Advisory |
09 Sep 2021, 17:51
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-269 | |
CPE | cpe:2.3:a:pivotal:cloud_foundry:208:*:*:*:*:*:*:* |
cpe:2.3:a:cloudfoundry:cf-release:*:*:*:*:*:*:*:* |
17 Aug 2021, 12:44
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:cloudfoundry:uaa:2.3.1:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.3.0:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.0.0:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.2.2:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.2.5.3:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.6.0:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.2.5.2:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.6.1:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.2.0:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.7.0.1:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.3.1.1:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.0.3:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.2.1:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.1.0:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.4.1:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.5.0:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.2.5:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.2.6:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.0.1:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.4.0:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.7.0.3:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.0.2:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.2.4:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.6.2:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.2.3:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.2.4.1:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.5.1:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.7.1:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.7.0.2:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.7.0:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.7.3:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.7.2:*:*:*:*:*:*:* |
cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.2.6:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.4.1:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.2.5.2:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.5.1:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.7.0:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.0.1:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.2.0:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.3.1:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.4.0:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.7.3:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.0.0:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.7.2:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.1.0:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.5.0:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.2.5:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.2.3:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.0.2:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.0.3:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.2.4:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.3.0:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.7.0.1:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.5.2:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.2.2:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.7.1:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.7.0.2:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.7.0.3:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.2.5.3:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.6.1:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.2.1:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.3.1.1:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.6.0:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.6.2:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:user_account_and_authentication:2.2.4.1:*:*:*:*:*:*:* |
25 May 2021, 12:57
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:pivotal:uaa:2.6.2:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.5.0:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.7.2:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.3.1:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.0.3:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.7.0.1:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.4.1:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.3.1.1:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.7.3:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.5.2:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.7.0:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.5.1:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.2.5:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.7.0.2:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa-release:3:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.2.0:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa-release:4:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.7.1:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.2.4.1:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.2.1:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.2.5.2:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.2.6:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.4.0:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.6.0:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.0.1:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.0.0:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.0.2:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.2.4:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.1.0:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.6.1:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa-release:2:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.3.0:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.2.2:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.2.3:*:*:*:*:*:*:* cpe:2.3:a:pivotal:uaa:2.7.0.3:*:*:*:*:*:*:* |
cpe:2.3:a:cloudfoundry:uaa:2.0.0:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa-release:3:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.2.3:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.6.0:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.7.1:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.7.0.3:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.2.2:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.2.1:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.4.0:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.2.4:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.7.0.2:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.2.5.3:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.4.1:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.2.6:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.7.0:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.0.1:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.7.3:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.0.3:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.6.1:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.3.1.1:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.2.5:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa-release:4:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.5.2:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.0.2:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.7.2:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.6.2:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.2.5.2:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.5.0:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.3.0:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.1.0:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.3.1:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.7.0.1:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa-release:2:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.2.0:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.5.1:*:*:*:*:*:*:* cpe:2.3:a:cloudfoundry:uaa:2.2.4.1:*:*:*:*:*:*:* |
Information
Published : 2017-09-07 13:29
Updated : 2024-11-21 02:42
NVD link : CVE-2016-0732
Mitre link : CVE-2016-0732
CVE.ORG link : CVE-2016-0732
JSON object : View
Products Affected
cloudfoundry
- uaa-release
- user_account_and_authentication
- cf-release
pivotal
- elastic_runtime
CWE
CWE-269
Improper Privilege Management