Vulnerability Details CVE-2022-35241
In versions 2.x before 2.3.1 and all versions of 1.x, when NGINX Instance Manager is in use, undisclosed requests can cause an increase in disk resource utilization. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 65.0%
CVSS Severity
CVSS v3 Score 6.5
Products affected by CVE-2022-35241
-
cpe:2.3:a:f5:nginx_instance_manager:1.0.0
-
cpe:2.3:a:f5:nginx_instance_manager:1.0.1
-
cpe:2.3:a:f5:nginx_instance_manager:1.0.2
-
cpe:2.3:a:f5:nginx_instance_manager:1.0.3
-
cpe:2.3:a:f5:nginx_instance_manager:1.0.4
-
cpe:2.3:a:f5:nginx_instance_manager:2.0.0
-
cpe:2.3:a:f5:nginx_instance_manager:2.0.1
-
cpe:2.3:a:f5:nginx_instance_manager:2.1.0
-
cpe:2.3:a:f5:nginx_instance_manager:2.2.0
-
cpe:2.3:a:f5:nginx_instance_manager:2.3.0