Lucene search

K
f5F5F5:K84141859
HistorySep 26, 2019 - 12:00 a.m.

K84141859 : Apache Traffic Control vulnerability CVE-2019-12405

2019-09-2600:00:00
my.f5.com
10

9.4 High

AI Score

Confidence

High

0.004 Low

EPSS

Percentile

74.9%

Security Advisory Description

Improper authentication is possible in Apache Traffic Control versions 3.0.0 and 3.0.1 if LDAP is enabled for login in the Traffic Ops API component. Given a username for a user that can be authenticated via LDAP, it is possible to improperly authenticate as that user without that user’s correct password. (CVE-2019-12405)

Impact

There is no impact; F5 products are not affected by this vulnerability.

9.4 High

AI Score

Confidence

High

0.004 Low

EPSS

Percentile

74.9%