CVE-2021-23020

5.5MEDIUM

The NAAS 3.x before 3.10.0 API keys were generated using an insecure pseudo-random string and hashing algorithm which could lead to predictable keys.

Published: 6/1/2021Updated: 11/21/2024

Description

The NAAS 3.x before 3.10.0 API keys were generated using an insecure pseudo-random string and hashing algorithm which could lead to predictable keys.

AI AnalysisPowered by AI

Affected Products

f5nginx_controller

References