First published: Fri Apr 24 2020(Updated: )
In BIG-IQ 6.0.0-7.0.0, a remote access vulnerability has been discovered that may allow a remote user to execute shell commands on affected systems using HTTP requests to the BIG-IQ user interface.
Credit: f5sirt@f5.com
Affected Software | Affected Version | How to fix |
---|---|---|
F5 BIG-IQ Centralized Management | >=6.0.0<=6.1.0 | |
F5 BIG-IQ Centralized Management | =7.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-5868 is a remote access vulnerability in BIG-IQ 6.0.0-7.0.0.
CVE-2020-5868 allows a remote user to execute shell commands on affected systems using HTTP requests to the BIG-IQ user interface.
CVE-2020-5868 affects F5 BIG-IQ Centralized Management versions 6.0.0-6.1.0 and version 7.0.0.
CVE-2020-5868 has a severity rating of 9.8 (Critical).
To fix CVE-2020-5868, upgrade to a non-vulnerable version of BIG-IQ Centralized Management.