CVE-2026-47827: – BOSH CLI Powershell Injection
Published Aug 21, 2026
·Updated
Command Injection in BOSH CLI tool on windows in Cloud Foundry allows a remote attacker to execute arbitrary shell commands via command injection vulnerabilities
Affected Software
1 affected component
Cloud Foundry BOSH CLI
Event History
Aug 21, 2026
CVE Published
via MITRE·09:38 AM
Data Sourced
via MITRE·09:38 AM
DescriptionSeverity
Frequently Asked Questions
1
What access does an attacker need to exploit this issue?
The CVSS vector indicates adjacent-network access is required, with no privileges or user interaction required. Exploitation is rated high complexity.
2
Which systems should be prioritized for review?
Prioritize Windows systems that use the Cloud Foundry BOSH CLI. The issue is identified as a PowerShell command-injection vulnerability in that environment.
3
What is the potential impact of successful exploitation?
A remote attacker could execute arbitrary shell commands. The vulnerability is rated high impact for confidentiality, integrity, and availability.