CVE-2016-5745: Critical severity riverbed steelapp traffic manager vulnerability
F5 BIG-IP LTM systems 11.x before 11.2.1 HF16, 11.3.x, 11.4.x before 11.4.1 HF11, 11.5.0, 11.5.1 before HF11, 11.5.2, 11.5.3, 11.5.4 before HF2, 11.6.0 before HF8, 11.6.1 before HF1, 12.0.0 before HF4, and 12.1.0 before HF2 allow remote attackers to modify or extract system configuration files via vectors involving NAT64.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-5745?
CVE-2016-5745 has a severity rating of high due to its potential for remote attackers to modify or extract critical system configuration files.
How do I fix CVE-2016-5745?
To fix CVE-2016-5745, upgrade your F5 BIG-IP LTM systems to the latest version as specified in the F5 advisory.
Which versions of F5 BIG-IP LTM are affected by CVE-2016-5745?
Affected versions include F5 BIG-IP LTM 11.x before 11.2.1 HF16, and various 11.3.x, 11.4.x, 11.5.x, 11.6.x, and 12.x versions before specific hotfixes.
Can CVE-2016-5745 be exploited remotely?
Yes, CVE-2016-5745 can be exploited remotely, allowing attackers to affect the system's configuration without physical access.
What type of impact can CVE-2016-5745 have on my system?
CVE-2016-5745 can lead to unauthorized access to and modification of system configuration files, compromising the integrity of the BIG-IP system.