Security Advisory

CVE-2018-1276

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-05-17 20:00:00
Last updated 2024-09-16 23:16:44
Assigner dell
State PUBLISHED

Description

Windows 2012R2 stemcells, versions prior to 1200.17, contain an information exposure vulnerability on vSphere. A remote user with the ability to push apps can execute crafted commands to read the IaaS metadata from the VM, which may contain BOSH credentials.