Cloud foundry instances having CAPI version between 1.140 and 1.152.0 along with loggregator-agent v7+ may override other users syslog drain credentials if they're aware of the client certificate used for that syslog drain. This applies even if the drain has zero certs. This would allow the user to override the private key and add or modify a certificate authority used for the connection.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:HCloudfoundry Capi Release
APPCloudfoundry1.140 – 1.152.0Cloudfoundry Cf Deployment
APPCloudfoundry24.7.0 – 29.0.0Cloudfoundry Loggregator Agent
APPCloudfoundry7.0 – 7.2.1
Related vulnerabilities
Cloudfoundry Diego — pominięcie uwierzytelniania mTLS przez niezabezpieczony port
Cloud Foundry cf-deployment: wstrzyknięcie kodu przez niezaszyfrowany protokół pobierania zależności
Cloud Controller versions prior to 1.118.0 are vulnerable to unauthenticated denial of Service(DoS) vulnerabil...
In UAA versions prior to 75.3.0, sensitive information like relaying secret of the provider was revealed in re...
CAPI (Cloud Controller) versions prior to 1.101.0 are vulnerable to a denial-of-service attack in which an una...