Sonatype Nexus Repository Manager 3.x through 3.35.0 allows attackers to access the SSL Certificates Loading function via a low-privileged account.
References
Link | Resource |
---|---|
https://support.sonatype.com | Vendor Advisory |
https://support.sonatype.com/hc/en-us/articles/4408801690515-CVE-2021-42568-Nexus-Repository-Manager-3-Incorrect-Access-Control-October-27-2021 | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2021-11-02 13:15
Updated : 2022-06-28 14:11
NVD link : CVE-2021-42568
Mitre link : CVE-2021-42568
CVE.ORG link : CVE-2021-42568
JSON object : View
Products Affected
sonatype
- nexus_repository_manager
CWE