Lucene search

K
f5F5F5:K000138634
HistoryMay 08, 2024 - 12:00 a.m.

K000138634 : BIG-IP Next Central Manager vulnerability CVE-2024-32049

2024-05-0800:00:00
my.f5.com
11
big-ip next central manager
vulnerability
cve-2024-32049
unauthenticated
remote attacker
big-ip next ltm/waf
instance credentials
man-in-the-middle
ssl communication

AI Score

7.2

Confidence

Low

EPSS

0

Percentile

9.0%

Security Advisory Description

BIG-IP Next Central Manager may allow an unauthenticated, remote attacker to obtain BIG-IP Next LTM/WAF instance credentials. (CVE-2024-32049)

Impact

This vulnerability may allow an unauthenticated attacker in a man-in-the-middle (MITM) position between a BIG-IP Next LTM/WAF instance and BIG-IP Next Central Manager to decrypt and modify the SSL communication between BIG-IP Next Central Manager and the BIG-IP Next LTM/WAF instance.

AI Score

7.2

Confidence

Low

EPSS

0

Percentile

9.0%

Related for F5:K000138634