First published: Thu Aug 22 2024(Updated: )
NGINX Agent's config_dirs restriction feature allows a highly privileged attacker to gain the ability to write/overwrite files outside of the designated secure directory.
Affected Software | Affected Version | How to fix |
---|---|---|
F5 NGINX Agent | >=2.17.0<=2.36.1 | 2.37.0 |
F5 NGINX Instance Manager | >=2.3.1<=2.17.1=3 | 2.17.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.