Unrated severityNVD Advisory· Published Nov 2, 2018· Updated Sep 16, 2024
Pivotal Operations Manager gives all users heightened privileges
CVE-2018-15762
Description
Pivotal Operations Manager, versions 2.0.x prior to 2.0.24, versions 2.1.x prior to 2.1.15, versions 2.2.x prior to 2.2.7, and versions 2.3.x prior to 2.3.1, grants all users a scope which allows for privilege escalation. A remote malicious user who has been authenticated may create a new client with administrator privileges for Opsman.
Affected products
1- Range: 2.0.x
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- pivotal.io/security/cve-2018-15762mitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.