CVE-2019-6664: High severity f5 access policy manager vulnerability
On BIG-IP 15.0.0 and 14.1.0-14.1.0.6, under certain conditions, network protections on the management port do not follow current best practices.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-6664?
CVE-2019-6664 is a vulnerability that affects the management port on BIG-IP devices running certain versions of software.
What software is affected by CVE-2019-6664?
The affected software includes F5 BIG-IP Access Policy Manager, Advanced Firewall Manager, Analytics, Application Acceleration Manager, Application Security Manager, Domain Name System, Edge Gateway, Fraud Protection Service, Global Traffic Manager, Link Controller, Local Traffic Manager, Policy Enforcement Manager, and Webaccelerator.
What is the severity of CVE-2019-6664?
CVE-2019-6664 has a severity rating of 7.5 (high).
How does CVE-2019-6664 impact network protections on the management port?
Under certain conditions, network protections on the management port may not follow current best practices.
How can I fix the vulnerability CVE-2019-6664?
To fix CVE-2019-6664, upgrade to a version of the affected software that is not vulnerable.