ZeroHour

CVE-2020-5864

CVSS 3.1
7.4 high
EPSS
1%p62
Published
()
Modified
Description

In versions of NGINX Controller prior to 3.2.0, communication between NGINX Controller and NGINX Plus instances skip TLS verification by default.

Vendors
f5
Products
nginx controller
Weakness
CWE-295
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N

In the news

No ingested article mentions this CVE yet.