Loading
Generated remediation guidance and an executive summary. No account required.
Pivotal Operations Manager, versions 2.0.x prior to 2.0.24, versions 2.1.x prior to 2.1.15, versions 2.2.x prior to 2.2.7, and versions 2.3.x prior to 2.3.1, grants all users a scope which allows for privilege escalation. A remote malicious user who has been authenticated may create a new client with administrator privileges for Opsman.
Use CWE-269, Pivotal Software vendor hub and Operations Manager product page to widen CVE-2018-15762 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2016-0897, CVE-2016-0883 and CVE-2018-11081 for nearby disclosures in the same product family.