F5-K000140630: Medium severity f5 nginx agent vulnerability
NGINX Agent's configdirs restriction feature allows a highly privileged attacker to gain the ability to write/overwrite files outside of the designated secure directory.
Affected Software
Event History
Frequently Asked Questions
What is the severity of F5-K000140630?
The severity of F5-K000140630 is high due to the potential for a highly privileged attacker to write or overwrite files.
How do I fix F5-K000140630?
To fix F5-K000140630, upgrade to NGINX Agent version 2.37.0 or NGINX Instance Manager version 2.17.2.
What versions are affected by F5-K000140630?
F5-K000140630 affects NGINX Agent versions between 2.17.0 and 2.36.1 and NGINX Instance Manager versions between 2.3.1 and 2.17.1.
Who is affected by F5-K000140630?
Organizations using F5 NGINX Agent or F5 NGINX Instance Manager with the specified vulnerable versions are affected by F5-K000140630.
What impact does F5-K000140630 have on security?
F5-K000140630 can lead to unauthorized file access and potential exploitation by attackers due to file write/overwrite vulnerabilities.