Back to Database
Status published
Low
CVE-2024-22200
vantage6-UI docker image leaks software version information
Vulnerability Description
vantage6-UI is the User Interface for vantage6. The docker image used to run the UI leaks the nginx version. To mitigate the vulnerability, users can run the UI as an angular application. This vulnerability was patched in 4.2.0.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-22200
Credits & Attribution
No credits recorded in the NVD database.
References
More from vantage6
View All →CVE-2025-43866
Vantage6 Server JWT secret not cryptographically secure
Low
1.7
CVE-2025-43863
vantage6 lacks brute-force protection on change password functionality
Low
1.7
CVE-2024-32969
vantage6 collaboration admins can extend their influence by expanding the collaboration
Low
2.7
CVE-2024-27928
Vantage6: 2FA can be circumvented with hacked email access
Medium
5.9
CVE-2024-24770
Username timing attack on recover password/MFA token in vantage6
Medium
5.3
Affected Vendor
vantage6
View all reports →Affected Software
vantage6-UI
Vulnerable Versions:
< 4.2.0
Timeline
Official Publish:
January 30th, 2024
Last Modified:
May 29th, 2025
Added to House:
July 22nd, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N