CVE-2024-28132
published 2024-05-08CVE-2024-28132: Exposure of Sensitive Information vulnerability exists in the GSLB container, which may allow an authenticated attacker with local access to view sensitive…
PriorityP416medium4.4CVSS 3.1
AVLACLPRHUINSUCHINAN
EPSS
0.17%
6.2th percentile
Exposure of Sensitive Information vulnerability exists in the GSLB container, which may allow an authenticated attacker with local access to view sensitive information. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| f5 | big-ip_next_cloud-native_network_functions | >= 1.2.0 < 1.3.0 | 1.3.0 |
| f5 | big-ip_next_cnf | — | — |
| f5 | big-ip_next_cnf | >= 1.2.0 < 1.3.0 | 1.3.0 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-hwq4-p9m3-4cjm: Exposure of Sensitive Information vulnerability exists in the GSLB container, which may allow an authenticated attacker with local access to view sens
ghsa_unreviewed·2024-05-08
CVE-2024-28132 [MEDIUM] CWE-922 GHSA-hwq4-p9m3-4cjm: Exposure of Sensitive Information vulnerability exists in the GSLB container, which may allow an authenticated attacker with local access to view sens
Exposure of Sensitive Information vulnerability exists in the GSLB container, which may allow an authenticated attacker with local access to view sensitive information. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
F5
CVE-2024-28132: Exposure of Sensitive Information vulnerability exists in the GSLB container, which may allow an authenticated attack...
vendor_f5·2024-05-08·CVSS 4.4
CVE-2024-28132 [MEDIUM] CWE-922 CVE-2024-28132: Exposure of Sensitive Information vulnerability exists in the GSLB container, which may allow an authenticated attack...
CVE-2024-28132: Exposure of Sensitive Information vulnerability exists in the GSLB container, which may allow an authenticated attack...
Exposure of Sensitive Information vulnerability exists in the GSLB container, which may allow an authenticated attacker with local access to view sensitive information. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
Affected Products: BIG-IP Next CNF
Affected Versions: 1.2.0 - 1.3.0
F5 Advisory Articles: K000138913
F5 References: https://my.f5.com/manage/s/article/K000138913
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2024-05-08
Published