QID 378026
Date Published: 2023-02-27
QID 378026: F5 BIG-IP Advanced WAF and BIG-IP Application Security Manager (ASM) Multipart Request Security Exposure (K39002226)
The F5 Advanced Web Application Firewall (Advanced WAF) and BIG-IP ASM systems may not correctly detect attack signatures, This issue occurs when the Advanced WAF or BIG-IP ASM received a client request containing a specially crafted multipart body.
Vulnerable Component:
BIG-IP ASM,WAF
Affected Versions:
16.1.0 - 16.1.2
15.1.0 - 15.1.5
14.1.0 - 14.1.4
13.1.0. - 13.1.4
12.1.0. - 12.1.6
11.6.1. - 11.6.5
QID Detection Logic(Authenticated):
This QID checks for the vulnerable versions of F5 BIG-IP devices using the tmsh command.
The Advanced WAF or BIG-IP ASM unexpectedly fails to trigger an attack detection.
Solution
For more information about patch details please refer to: 39002226
Vendor References
- K39002226 -
my.f5.com/manage/s/article/K39002226
CVEs related to QID 378026
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| K39002226 |
|