CVE-2024-23306

A

vulnerability exists in BIG-IP Next CNF and SPK systems that may allow access to undisclosed sensitive files.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated

References
Configurations

Configuration 1 (hide)

cpe:2.3:a:f5:big-ip_next_cloud-native_network_functions:*:*:*:*:*:*:*:*

History

05 Sep 2025, 15:50

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 4.4
v2 : unknown
v3 : 7.1
Summary (en) A vulnerability exists in BIG-IP Next CNF and SPK systems that may allow access to undisclosed sensitive files.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated (en) A vulnerability exists in BIG-IP Next CNF and SPK systems that may allow access to undisclosed sensitive files.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated

23 Jan 2025, 19:51

Type Values Removed Values Added
CPE cpe:2.3:a:f5:big-ip_next_cloud-native_network_functions:*:*:*:*:*:*:*:*
CWE NVD-CWE-noinfo
References () https://my.f5.com/manage/s/article/K000137886 - () https://my.f5.com/manage/s/article/K000137886 - Vendor Advisory
First Time F5
F5 big-ip Next Cloud-native Network Functions

21 Nov 2024, 08:57

Type Values Removed Values Added
References () https://my.f5.com/manage/s/article/K000137886 - () https://my.f5.com/manage/s/article/K000137886 -

Information

Published : 2024-02-14 17:15

Updated : 2025-09-05 15:50


NVD link : CVE-2024-23306

Mitre link : CVE-2024-23306

CVE.ORG link : CVE-2024-23306


JSON object : View

CWE
CWE-522

Insufficiently Protected Credentials

NVD-CWE-noinfo