Vulnerabilities > CVE-2022-28049 - NULL Pointer Dereference vulnerability in F5 NJS 0.7.2

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
f5
CWE-476

Summary

NGINX NJS 0.7.2 was discovered to contain a NULL pointer dereference via the component njs_vmcode_array at /src/njs_vmcode.c.

Vulnerable Configurations

Part Description Count
Application
F5
1

Common Weakness Enumeration (CWE)