CVE-2024-23306

CVSS 3.1 Score 4.4 of 10 (medium)

Details

Published Feb 14, 2024
CWE ID 522

Summary

CVE-2024-23306 is a newly disclosed vulnerability affecting BIG-IP Next CNF and SPK systems. This issue could potentially grant unauthorized access to sensitive files, posing a significant risk to affected systems. Importantly, it's important to note that only versions of the software that are still under technical support will be evaluated for this vulnerability. Unsupported versions are not subject to patching or mitigation strategies. Organizations using impacted systems should urgently assess their exposure and apply appropriate patches or workarounds to secure their environment.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share