Lucene search

K
f5F5F5:K21540525
HistoryNov 02, 2020 - 12:00 a.m.

K21540525 : F5 TMUI XSS vulnerability CVE-2020-5945

2020-11-0200:00:00
my.f5.com
4
f5
tmui
xss vulnerability
cve-2020-5945
privilege escalation
admin
resource admin
system commands

AI Score

6.5

Confidence

High

EPSS

0.001

Percentile

42.8%

Security Advisory Description

Undisclosed TMUI page contains a stored cross site scripting vulnerability (XSS). The issue allows a minor privilege escalation for resource admin to escalate to full admin. (CVE-2020-5945)

Impact

A malicious, authenticated user with Resource Administrator privileges may be able to exploit this vulnerability to escalate their role to full Administrator privileges and execute system commands. This vulnerability is located in an undisclosed Configuration utility (TMUI) page.

AI Score

6.5

Confidence

High

EPSS

0.001

Percentile

42.8%

Related for F5:K21540525