Kubernetes.Ingress.NGINX.Controller.Remote.Code.Execution

description-logoDescription

This indicates an attack attempt to exploit a Remote Code Execution Vulnerability in Kubernetes Ingress NGINX Controller.
The vulnerability is due to insufficient validation of user-supplied inputs. A remote, unauthenticated attacker could exploit this vulnerability by sending maliciously crafted requests to a target system. Successful exploitation could lead to arbitrary code execution within the context of the system.

affected-products-logoAffected Products

Kubernetes Ingress NGINX Controller < v1.11.0
v1.11.0-1.11.4
v1.12.0

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

Apply the most recent upgrade or patch from the vendor.
https://kubernetes.io/releases/

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Status Detail
2025-04-07 31.984
Modified
Default_action:pass:drop
2025-04-03 31.983
New