CVE-2022-35241

MEDIUM

F5 NGINX Instance Manager 1.x and 2.x < 2.3.1 - Uncontrolled Resource Consumption

Title source: llm
STIX 2.1

Description

In versions 2.x before 2.3.1 and all versions of 1.x, when NGINX Instance Manager is in use, undisclosed requests can cause an increase in disk resource utilization. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

References (1)

Core 1
Core References
Vendor Advisory x_refsource_misc
https://support.f5.com/csp/article/K37080719

Scores

CVSS v3 6.5
EPSS 0.0065
EPSS Percentile 71.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-400
Status published
Products (1)
f5/nginx_instance_manager 1.0.0 - 1.0.4
Published Aug 04, 2022
Tracked Since Feb 18, 2026