CVE-2018-5526: Medium severity F5 BIG-IP Application Security Manager vulnerability
Published Jun 1, 2018
·Updated
Under certain conditions, on F5 BIG-IP ASM 13.1.0-13.1.0.5, Behavioral DOS (BADOS) protection may fail during an attack.
Affected Software
1 affected component
F5 BIG-IP Application Security Manager>=13.1.0<=13.1.0.5
Event History
Jun 1, 2018
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
DescriptionWeakness
Data Sourced
via NVD·02:29 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2018-5526?
CVE-2018-5526 is rated as a medium severity vulnerability.
2
How do I fix CVE-2018-5526?
To fix CVE-2018-5526, upgrade your F5 BIG-IP ASM to version 13.1.0.6 or later.
3
What causes CVE-2018-5526?
CVE-2018-5526 is caused by the Behavioral DOS (BADOS) protection failing under certain attack conditions.
4
Which versions are affected by CVE-2018-5526?
CVE-2018-5526 affects F5 BIG-IP ASM versions 13.1.0 to 13.1.0.5.
5
Can CVE-2018-5526 be exploited remotely?
Yes, CVE-2018-5526 can be exploited remotely if the conditions for an attack are met.