ZeroHour

CVE-2020-5867

CVSS 3.1
8.1 high
EPSS
<1%p34
Published
()
Modified
Description

In versions prior to 3.3.0, the NGINX Controller Agent installer script 'install.sh' uses HTTP instead of HTTPS to check and install packages

Vendors
f5netapp
Products
nginx controller, cloud backup
Weakness
CWE-319, CWE-494
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.