Security Advisory

CVE-2019-11273

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-07-23 22:34:08
Last updated 2024-09-16 18:04:10
Assigner pivotal
State PUBLISHED

Description

Pivotal Container Services (PKS) versions 1.3.x prior to 1.3.7, and versions 1.4.x prior to 1.4.1, contains a vulnerable component which logs the username and password to the billing database. A remote authenticated user with access to those logs may be able to retrieve non-sensitive information.