CVE-2008-7032: CSRF
Web Management Console Cross-site request forgery (CSRF) vulnerability in the web management console in F5 BIG-IP 9.4.3 allows remote attackers to hijack the authentication of administrators for requests that create new administrators and execute shell commands, as demonstrated using tmui/Control/form.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-7032?
CVE-2008-7032 has a high severity rating due to its potential to allow remote attackers to hijack administrative sessions.
How do I fix CVE-2008-7032?
To mitigate CVE-2008-7032, administrators should upgrade F5 BIG-IP to a version that addresses this CSRF vulnerability.
Who is affected by CVE-2008-7032?
CVE-2008-7032 affects users of F5 BIG-IP version 9.4.3.
What type of vulnerability is CVE-2008-7032?
CVE-2008-7032 is identified as a cross-site request forgery (CSRF) vulnerability.
Can CVE-2008-7032 lead to unauthorized actions?
Yes, CVE-2008-7032 can allow attackers to perform unauthorized actions, such as creating new administrators.