Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-83x8-frp9-8943

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.8

Описание

In versions prior to 3.3.0, the NGINX Controller is configured to communicate with its Postgres database server over unencrypted channels, making the communicated data vulnerable to interception via man-in-the-middle (MiTM) attacks.

In versions prior to 3.3.0, the NGINX Controller is configured to communicate with its Postgres database server over unencrypted channels, making the communicated data vulnerable to interception via man-in-the-middle (MiTM) attacks.

EPSS

Процентиль: 32%
0.00119
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-200
CWE-319

Связанные уязвимости

CVSS3: 4.8
nvd
почти 6 лет назад

In versions prior to 3.3.0, the NGINX Controller is configured to communicate with its Postgres database server over unencrypted channels, making the communicated data vulnerable to interception via man-in-the-middle (MiTM) attacks.

EPSS

Процентиль: 32%
0.00119
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-200
CWE-319