NGINX Management Suite default file permissions are set such that an authenticated attacker may be able to modify sensitive files on NGINX Instance Manager and NGINX API Connectivity Manager.
Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
References
Link | Resource |
---|---|
https://my.f5.com/manage/s/article/K000133233 | Vendor Advisory |
https://security.netapp.com/advisory/ntap-20230609-0006/ |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: f5
Published: 2023-05-03T14:34:28.973Z
Updated: 2023-05-03T14:34:28.973Z
Reserved: 2023-04-14T23:08:02.613Z
Link: CVE-2023-28724
JSON object: View
NVD Information
Status : Modified
Published: 2023-05-03T15:15:13.020
Modified: 2023-06-09T08:15:10.027
Link: CVE-2023-28724
JSON object: View
Redhat Information
No data.
CWE