CVE-2021-22100 - CVE House
Back to Database
Status published Medium CVE-2021-22100

In cloud foundry CAPI versions prior to 1.122, a denial-of-service...

Vulnerability Description

In cloud foundry CAPI versions prior to 1.122, a denial-of-service attack in which a developer can push a service broker that (accidentally or maliciously) causes CC instances to timeout and fail is possible. An attacker can leverage this vulnerability to cause an inability for anyone to push or manage apps.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2021-22100

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

Cloud Controller (CAPI) by cloud foundry
Vulnerable Versions:
CAPI versions prior to 1.122.0

Timeline

Official Publish: March 25th, 2022
Last Modified: August 3rd, 2024
Added to House: July 21st, 2026

CVSS Vectors

V3: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

Weaknesses (CWE)