Show filters
1 Total Results
Displaying 1-1 of 1
Sort by:
Attacker Value
Unknown
UAA clients.write vulnerability
Disclosure Date: August 05, 2019 (last updated November 27, 2024)
Cloud Foundry UAA versions prior to v73.4.0 contain a vulnerability where a malicious client possessing the 'clients.write' authority or scope can bypass the restrictions imposed on clients created via 'clients.write' and create clients with arbitrary scopes that the creator does not possess.
0