CVE-2016-0928

EUVD-2016-0939
Multiple open redirect vulnerabilities in Pivotal Cloud Foundry (PCF) Elastic Runtime before 1.6.30 and 1.7.x before 1.7.8 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.
Open Redirect
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.4 HIGH
NETWORK
LOW
NONE
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:H/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 43%
Affected Products (NVD)
VendorProductVersion
pivotalcloud_foundry_elastic_runtime
𝑥
≤ 1.6.29
pivotalcloud_foundry_elastic_runtime
1.7.0
pivotalcloud_foundry_elastic_runtime
1.7.1
pivotalcloud_foundry_elastic_runtime
1.7.2
pivotalcloud_foundry_elastic_runtime
1.7.3
pivotalcloud_foundry_elastic_runtime
1.7.4
pivotalcloud_foundry_elastic_runtime
1.7.5
pivotalcloud_foundry_elastic_runtime
1.7.6
pivotalcloud_foundry_elastic_runtime
1.7.7
𝑥
= Vulnerable software versions