Pivotal Operations Manager vulnerabilities
2 known vulnerabilities affecting pivotal/operations_manager.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2018-11046MEDIUMCVSS 6.5v2.0.14≥ 2.1.x, < 2.1.62018-06-25
CVE-2018-11046 [MEDIUM] CWE-20 CVE-2018-11046: Pivotal Operations Manager, versions 2.1.x prior to 2.1.6 and version 2.0.14, includes NGINX package
Pivotal Operations Manager, versions 2.1.x prior to 2.1.6 and version 2.0.14, includes NGINX packages that lacks security vulnerability patches. An attacker with access to the NGINX processes and knowledge of how to exploit the unpatched vulnerabilities may be able to impact Operations Manager
cvelistv5nvd
CVE-2016-0930CRITICALCVSS 9.8≤ 1.6.18v1.7.0+9 more2016-09-18
CVE-2016-0930 [CRITICAL] CWE-362 CVE-2016-0930: Pivotal Cloud Foundry (PCF) Ops Manager before 1.6.19 and 1.7.x before 1.7.10, when vCloud or vSpher
Pivotal Cloud Foundry (PCF) Ops Manager before 1.6.19 and 1.7.x before 1.7.10, when vCloud or vSphere is used, has a default password for compilation VMs, which allows remote attackers to obtain SSH access by connecting within an installation-time period during which these VMs exist.
nvd