Improper Access Control Vulnerability in Infoblox NIOS for Grids
CVE-2024-37567

9.1CRITICAL

Key Information:

Vendor

Infoblox

Status
Vendor
CVE Published:
27 February 2025

What is CVE-2024-37567?

The Infoblox NIOS software versions up to 8.6.4 are susceptible to inadequate access control regarding Grids. This flaw may allow unauthorized users to gain elevated privileges, compromising the security posture of affected systems. Organizations using Infoblox NIOS should assess their exposure and consider applying recommended security measures promptly to mitigate potential risks.

References

CVSS V3.1

Score:
9.1
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.