Loading
Generated remediation guidance and an executive summary. No account required.
Cloud Foundry UAA, versions prior to v70.0, allows a user to update their own email address. A remote authenticated user can impersonate a different user by changing their email address to that of a different user.
Use CWE-290, Cloudfoundry vendor hub and Uaa Release product page to widen CVE-2019-3775 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2019-3801, CVE-2019-11279 and CVE-2019-3788 for nearby disclosures in the same product family.