CVE-2016-6655

Source
https://cve.org/CVERecord?id=CVE-2016-6655
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2016-6655.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2016-6655
Published
2017-06-13T06:29:00.190Z
Modified
2026-04-10T03:52:47.768446Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

An issue was discovered in Cloud Foundry Foundation Cloud Foundry release versions prior to v245 and cf-mysql-release versions prior to v31. A command injection vulnerability was discovered in a common script used by many Cloud Foundry components. A malicious user may exploit numerous vectors to execute arbitrary commands on servers running Cloud Foundry.

References

Affected packages

Git / github.com/cloudfoundry/cf-mysql-release

Affected ranges

Type
GIT
Repo
https://github.com/cloudfoundry/cf-mysql-release
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected
Database specific
{
    "versions": [
        {
            "introduced": "0"
        },
        {
            "last_affected": "30"
        }
    ]
}
Type
GIT
Repo
https://github.com/cloudfoundry/cf-release
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected
Database specific
{
    "versions": [
        {
            "introduced": "0"
        },
        {
            "last_affected": "244"
        }
    ]
}

Affected versions

Other
-
list
log
mariadb
scotty_09012012
v1
v10
v100
v102
v103
v104
v105
v109
v11
v119
v12
v132
v133
v134
v135
v136
v137
v140
v143
v156
v157
v16
v161
v17
v170
v18
v183
v2
v20
v205
v21
v22
v23
v24
v244
v27
v27_alpha
v28
v29
v3
v30
v4
v5
v6
v7
v8
v9
v99
works-for-us
rc145.*
rc145.0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2016-6655.json"