CVE-2020-5866
CVE-2020-5866
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 0.3%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
23 Apr 2020Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
In versions of NGINX Controller prior to 3.3.0, the helper.sh script, which is used optionally in NGINX Controller to change settings, uses sensitive items as command-line arguments.
Affected products
n/a · NGINX ControllerWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →