QID 376592
Date Published: 2022-05-16
QID 376592: F5 BIG-IP Application Security Manager (ASM), Access Policy Manager (APM) Restriction Bypass Vulnerability (K52322100)
When running in Appliance mode, an authenticated attacker with Administrator role privileges may be able to bypass Appliance mode restrictions due to a missing integrity check in F5 BIG-IP Guided Configuration. (CVE-2022-25946)
Affected Versions:
16.1.0 - 16.1.2
15.1.0 - 15.1.5
14.1.0 - 14.1.4
13.1.0.8 - 13.1.5
QID Detection Logic(Authenticated):
This QID checks for the vulnerable versions of F5 BIG-IP devices using the tmsh command.
In Appliance mode, an authenticated attacker with valid credentials assigned the Administrator role may be able to bypass appliance mode restrictions. This is a control plane issue; there is no data plane exposure. Appliance mode is enforced by a specific license or may be enabled or disabled for individual Virtual Clustered Multiprocessing (vCMP) guest instances.
- K52322100 -
support.f5.com/csp/article/K52322100
CVEs related to QID 376592
| Advisory ID | Software | Component | Link |
|---|