Medium severity4.8NVD Advisory· Published Apr 23, 2020· Updated Jun 17, 2026
CVE-2020-5865
CVE-2020-5865
Description
In versions prior to 3.3.0, the NGINX Controller is configured to communicate with its Postgres database server over unencrypted channels, making the communicated data vulnerable to interception via man-in-the-middle (MiTM) attacks.
Affected products
2- NGINX/Controllerdescription
- Range: <3.3.0
Patches
Vulnerability mechanics
References
2- security.netapp.com/advisory/ntap-20200430-0005/nvdThird Party Advisory
- support.f5.com/csp/article/K21009022nvdVendor Advisory
News mentions
0No linked articles in our index yet.