Lucene search

K
f5F5F5:K57214921
HistoryAug 26, 2020 - 12:00 a.m.

K57214921 : BIG-IP TMUI XSS vulnerability CVE-2020-5915

2020-08-2600:00:00
my.f5.com
7
tmui
xss attack
big-ip systems
device trust
ha configuration

AI Score

5.3

Confidence

High

EPSS

0.001

Percentile

33.8%

Security Advisory Description

An undisclosed Traffic Management User Interface (TMUI), or Configuration utility, page contains a vulnerability which allows a stored cross-site scripting (XSS) attack when BIG-IP systems are setup in a device trust.

Impact

On a BIG-IP system in a high availability (HA) configuration, users with Resource Administrator or Administrator roles may be able store an XSS attack, which could result in command execution by the logged in user.

AI Score

5.3

Confidence

High

EPSS

0.001

Percentile

33.8%

Related for F5:K57214921