A vulnerability in Cisco Nexus Dashboard could allow an authenticated, remote attacker to learn cluster deployment information on an affected device.
This vulnerability is due to improper access controls on a specific API endpoint. An attacker could exploit this vulnerability by sending queries to the API endpoint. A successful exploit could allow an attacker to access metrics and information about devices in the Nexus Dashboard cluster.
References
Configurations
No configuration.
History
No history.
Information
Published : 2024-04-03 17:15
Updated : 2024-04-03 17:24
NVD link : CVE-2024-20283
Mitre link : CVE-2024-20283
CVE.ORG link : CVE-2024-20283
JSON object : View
Products Affected
No product.
CWE
CWE-284
Improper Access Control