CVE-2023-28656

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
03/05/2023
Last modified:
19/05/2025

Description

NGINX Management Suite may allow an authenticated attacker to gain access to configuration objects outside of their assigned environment.  <br /> <br /> Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:netapp:cloud_backup:-:*:*:*:*:*:*:*
cpe:2.3:a:netapp:ontap_select_deploy:-:*:*:*:*:*:*:*
cpe:2.3:a:f5:nginx_api_connectivity_manager:*:*:*:*:*:*:*:* 1.0.0 (including) 1.5.0 (excluding)
cpe:2.3:a:f5:nginx_instance_manager:*:*:*:*:*:*:*:* 2.0.0 (including) 2.9.0 (excluding)
cpe:2.3:a:f5:nginx_security_monitoring:*:*:*:*:*:*:*:* 1.0.0 (including) 1.3.0 (excluding)