CVE-2017-4955: Pivotal Software Cloud Foundry Elastic Runtime
Critical severity, CVSS 9.8. EPSS: 1.4% chance of exploitation in the next 30 days.
An issue was discovered in Pivotal PCF Elastic Runtime 1.6.x versions prior to 1.6.65, 1.7.x versions prior to 1.7.48, 1.8.x versions prior to 1.8.28, and 1.9.x versions prior to 1.9.5. Several credentials were present in the logs for the Notifications errand in the PCF Elastic Runtime tile.
Affected products
- Pivotal Software Cloud Foundry Elastic Runtime: version 1.6.0 only; version 1.6.1 only; version 1.6.2 only; version 1.6.3 only; version 1.6.4 only; version 1.6.5 only; …
Published 2017-06-13. Last modified 2026-06-17.