CVE-2016-0897: Pivotal Software Operations Manager

Critical severity, CVSS 9.8. EPSS: 1.5% chance of exploitation in the next 30 days.

Pivotal Cloud Foundry (PCF) Ops Manager before 1.6.17 and 1.7.x before 1.7.8, when vCloud or vSphere is used, does not properly enable SSH access for operators, which has unspecified impact and remote attack vectors.

Affected products

  • Pivotal Software Operations Manager: up to and including 1.6.16; version 1.7.0 only; version 1.7.1 only; version 1.7.2 only; version 1.7.3 only; version 1.7.4 only; …

Published 2016-09-18. Last modified 2026-06-17.