Home Pivotal Application Service: 1.11.x versions prior to 1.11.26, 1.12.x versions prior to 1.12.14, 2.0.x versions prior to 2.0.5, Please note: PAS versions prior to 1.11 are not affected.
affected
Description
Apps Manager for PCF (Pivotal Application Service 1.11.x before 1.11.26, 1.12.x before 1.12.14, and 2.0.x before 2.0.5) allows unprivileged remote file read in its container via specially-crafted links.
Problem types
File Access Vulnerability
Product status
References
pivotal.io/security/cve-2018-1200
www.securityfocus.com/bid/103042 (103042)
pivotal.io/security/cve-2018-1200
www.securityfocus.com/bid/103042 (103042)