Vulnerability Description
vantage6-UI is the User Interface for vantage6. The docker image used to run the UI leaks the nginx version. To mitigate the vulnerability, users can run the UI as an angular application. This vulnerability was patched in 4.2.0.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Vantage6 | Vantage6-Ui | < 4.2.0 |
Related Weaknesses (CWE)
References
- https://github.com/vantage6/vantage6-UI/commit/92e0fb5102b544d5bcc23980d97357373Patch
- https://github.com/vantage6/vantage6-UI/security/advisories/GHSA-8wxq-346h-xmr8Vendor Advisory
- https://github.com/vantage6/vantage6-UI/commit/92e0fb5102b544d5bcc23980d97357373Patch
- https://github.com/vantage6/vantage6-UI/security/advisories/GHSA-8wxq-346h-xmr8Vendor Advisory
FAQ
What is CVE-2024-22200?
CVE-2024-22200 is a vulnerability with a CVSS score of 3.3 (LOW). vantage6-UI is the User Interface for vantage6. The docker image used to run the UI leaks the nginx version. To mitigate the vulnerability, users can run the UI as an angular application. This vulner...
How severe is CVE-2024-22200?
CVE-2024-22200 has been rated LOW with a CVSS base score of 3.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-22200?
Check the references section above for vendor advisories and patch information. Affected products include: Vantage6 Vantage6-Ui.