QID 377790
Date Published: 2022-11-23
QID 377790: F5 BIG-IP improvements (K05403841)
Vulnerable Component: BIG-IP ASM,LTM,APM
Affected Versions:
17.0.0
16.1.0 - 16.1.3
15.1.0 - 15.1.8
14.1.0 - 14.1.5
13.1.0 - 13.1.5
QID Detection Logic(Authenticated):
This QID checks for the vulnerable versions of F5 BIG-IP devices using the tmsh command.
While an attacker with Advanced Shell (bash) access to the BIG-IP or BIG-IQ system may be able to use these issues to execute arbitrary system commands, create or delete files, or disable services, F5 knows of no ways an attacker would be able to take advantage of these issues at this time. In default, recommended or supported deployments, only Administrator role users and the root user are granted bash access on the BIG-IP or BIG-IQ system, and these users already have full access to the local system.
- K05403841 -
support.f5.com/csp/article/K05403841
CVEs related to QID 377790
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| K05403841 |
|