Lucene search

K
cvelistF5CVELIST:CVE-2018-15332
HistoryDec 06, 2018 - 2:00 p.m.

CVE-2018-15332

2018-12-0614:00:00
f5
www.cve.org

6.6 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

12.8%

The svpn component of the F5 BIG-IP APM client prior to version 7.1.7.2 for Linux and macOS runs as a privileged process and can allow an unprivileged user to get ownership of files owned by root on the local client host in a race condition.

CNA Affected

[
  {
    "product": "BIG-IP (APM), BIG-IP APM Clients, BIG-IP Edge Client",
    "vendor": "F5 Networks, Inc.",
    "versions": [
      {
        "status": "affected",
        "version": "APM Client 7.1.5 - 7.1.7.1, Edge Client 7101 - 7150"
      }
    ]
  }
]

6.6 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

12.8%

Related for CVELIST:CVE-2018-15332