Lucene search

K
f5F5F5:K82814400
HistoryApr 30, 2019 - 12:00 a.m.

K82814400 : Appliance mode tmsh vulnerability CVE-2019-6616

2019-04-3000:00:00
my.f5.com
7

0.001 Low

EPSS

Percentile

47.3%

Security Advisory Description

On BIG-IP 14.0.0-14.1.0.1, 13.0.0-13.1.1.4, 12.1.0-12.1.4, 11.6.1-11.6.3.4, and 11.5.2-11.5.8, administrative users with TMSH access can overwrite critical system files on BIG-IP which can result in bypass of whitelist / blacklist restrictions enforced by appliance mode. (CVE-2019-6616)

Note: F5 is working to eliminate exclusionary language in our products and documentation. For more information, refer to K34150231: Exclusionary language in F5 products and documentation.

Impact

BIG-IP

This vulnerability allows a privilege escalation for authenticated administrative users.

BIG-IQ, F5 iWorkflow, Enterprise Manager, and Traffix SDC

There is no impact; these F5 products are not affected by this vulnerability.

0.001 Low

EPSS

Percentile

47.3%

Related for F5:K82814400