CVE-2016-0928: High severity pivotal elastic runtime vulnerability
Multiple open redirect vulnerabilities in Pivotal Cloud Foundry (PCF) Elastic Runtime before 1.6.30 and 1.7.x before 1.7.8 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-0928?
CVE-2016-0928 is classified as a moderate severity vulnerability due to its potential for phishing attacks.
How do I fix CVE-2016-0928?
To fix CVE-2016-0928, upgrade Pivotal Cloud Foundry Elastic Runtime to version 1.6.30 or 1.7.8 or later.
What software is affected by CVE-2016-0928?
CVE-2016-0928 affects Pivotal Cloud Foundry Elastic Runtime versions prior to 1.6.30 and 1.7.x versions before 1.7.8.
Can CVE-2016-0928 be exploited for attacks?
Yes, CVE-2016-0928 can be exploited by remote attackers to redirect users to arbitrary websites.
What is the impact of CVE-2016-0928?
The impact of CVE-2016-0928 includes the potential for phishing attacks by redirecting users to malicious sites.