potentially resulting in users retaining access rights they should not
have. This can allow them to perform operations beyond their intended
permissions.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-37633 | Failure to properly synchronize user's permissions in UAA in Cloud Foundry Foundation v40.17.0 https://github.com/cloudfoundry/cf-deployment/releases/tag/v40.17.0 , potentially resulting in users retaining access rights they should not have. This can allow them to perform operations beyond their intended permissions. |
No history.
Status: PUBLISHED
Assigner: vmware
Published:
Updated: 2024-08-02T04:19:20.500Z
Reserved: 2024-06-19T22:31:57.186Z
Link: CVE-2024-38806
Updated: 2024-08-02T04:19:20.500Z
Status : Deferred
Published: 2024-07-18T19:15:12.057
Modified: 2026-06-17T07:41:04.937
Link: CVE-2024-38806
No data.
OpenCVE Enrichment
Updated: 2025-07-13T11:14:19Z
-
CWE-440
Expected Behavior Violation
EUVD