CVE-2024-22200

LOW

vantage6-UI - Info Disclosure

Title source: llm
STIX 2.1

Description

vantage6-UI is the User Interface for vantage6. The docker image used to run the UI leaks the nginx version. To mitigate the vulnerability, users can run the UI as an angular application. This vulnerability was patched in 4.2.0.

Scores

CVSS v3 3.3
EPSS 0.0018
EPSS Percentile 39.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-200
Status published
Products (1)
vantage6/vantage6-ui < 4.2.0
Published Jan 30, 2024
Tracked Since Feb 18, 2026