Vulnerability Details CVE-2018-1192
In Cloud Foundry Foundation cf-release versions prior to v285; cf-deployment versions prior to v1.7; UAA 4.5.x versions prior to 4.5.5, 4.8.x versions prior to 4.8.3, and 4.7.x versions prior to 4.7.4; and UAA-release 45.7.x versions prior to 45.7, 52.7.x versions prior to 52.7, and 53.3.x versions prior to 53.3, the SessionID is logged in audit event logs. An attacker can use the SessionID to impersonate a logged-in user.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 64.1%
CVSS Severity
CVSS v3 Score 8.8
CVSS v2 Score 6.5
Products affected by CVE-2018-1192
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.0.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.0.1
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.0.2
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.1.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.10.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.11.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.12.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.13.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.14.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.15.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.16.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.17.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.18.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.19.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.2.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.2.1
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.2.2
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.20.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.21.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.22.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.23.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.24.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.25.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.26.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.27.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.28.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.29.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.3.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.30.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.31.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.32.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.32.1
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.33.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.34.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.35.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.36.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.37.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.4.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.5.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.7.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.8.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.9.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:0.9.1
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:1.0.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:1.1.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:1.2.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:1.3.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:1.3.1
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:1.4.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:1.5.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-deployment:1.6.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:100
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:101
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:102
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:103
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:104
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:105
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:106
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:107
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:108
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:109
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:110
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:111
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:112
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:113
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:114
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:115
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:116
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:117
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:118
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:119
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:120
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:121
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:122
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:123
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:124
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:125
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:126
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:127
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:128
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:129
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:130
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:131
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:132
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:133
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:134
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:135
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:136
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:137
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:138
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:139
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:140
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:141
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:142
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:143
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:144
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:145
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:146
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:147
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:148
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:149
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:150
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:151
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:152
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:153
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:154
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:155
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:156
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:157
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:158
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:159
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:160
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:161
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:162
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:163
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:164
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:165
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:166
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:168
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:169
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:170
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:171
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:172
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:173
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:175
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:176
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:177
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:178
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:179
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:180
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:182
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:183
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:186
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:187
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:188
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:189
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:190
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:191
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:192
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:193
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:194
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:195
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:196
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:197
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:198
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:199
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:200
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:201
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:202
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:203
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:204
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:205
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:206
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:207
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:208
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:209
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:210
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:211
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:212
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:213
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:214
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:215
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:217
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:218
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:219
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:220
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:221
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:222
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:223
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:224
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:225
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:226
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:227
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:228
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:229
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:230
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:231
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:232
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:233
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:234
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:235
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:236
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:237
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:238
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:239
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:240
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:241
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:242
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:243
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:244
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:245
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:246
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:247
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:248
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:249
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:250
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:251
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:252
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:253
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:254
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:255
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:256
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:257
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:258
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:259
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:260
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:261
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:262
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:263
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:264
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:265
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:266
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:267
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:268
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:269
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:270
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:271
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:272
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:273
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:274
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:275
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:276
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:277
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:278
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:279
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:280
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:281
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:282
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:283
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:284
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:68
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:69
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:70
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:71
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:72
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:73
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:74
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:75
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:76
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:77
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:78
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:79
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:80
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:81
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:82
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:83
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:84
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:85
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:86
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:87
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:88
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:89
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:90
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:91
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:92
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:93
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:94
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:95
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:96
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:97
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:98
-
cpe:2.3:a:pivotal_software:cloud_foundry_cf-release:99
-
cpe:2.3:a:pivotal_software:cloud_foundry_uaa-release:45.7
-
cpe:2.3:a:pivotal_software:cloud_foundry_uaa-release:52.7
-
cpe:2.3:a:pivotal_software:cloud_foundry_uaa-release:53.3
-
cpe:2.3:a:pivotal_software:cloud_foundry_uaa:4.5.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_uaa:4.5.1
-
cpe:2.3:a:pivotal_software:cloud_foundry_uaa:4.5.2
-
cpe:2.3:a:pivotal_software:cloud_foundry_uaa:4.5.3
-
cpe:2.3:a:pivotal_software:cloud_foundry_uaa:4.5.4
-
cpe:2.3:a:pivotal_software:cloud_foundry_uaa:4.7.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_uaa:4.7.1
-
cpe:2.3:a:pivotal_software:cloud_foundry_uaa:4.7.2
-
cpe:2.3:a:pivotal_software:cloud_foundry_uaa:4.7.3
-
cpe:2.3:a:pivotal_software:cloud_foundry_uaa:4.8.0
-
cpe:2.3:a:pivotal_software:cloud_foundry_uaa:4.8.1
-
cpe:2.3:a:pivotal_software:cloud_foundry_uaa:4.8.2