In versions 3.0.0-3.5.0, 2.0.0-2.9.0, and 1.0.1, the Neural Autonomic Transport System (NATS) messaging services in use by the NGINX Controller do not require any form of authentication, so any successful connection would be authorized.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: f5

Published: 2020-07-02T12:25:11

Updated: 2024-08-04T08:47:40.655Z

Reserved: 2020-01-06T00:00:00

Link: CVE-2020-5910

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2020-07-02T13:15:10.373

Modified: 2021-07-21T11:39:23.747

Link: CVE-2020-5910

cve-icon Redhat

No data.