F5-K000132800: Medium severity f5 f5os vulnerability
Published Feb 14, 2024
·Updated
A directory traversal vulnerability exists in the F5OS QKView utility that allows an authenticated attacker to read files outside the QKView directory.
Affected Software
2 affected componentsFixes available
F5 F5OS>=1.3.0<=1.3.2
1.4.0
F5 F5OS>=1.3.0<=1.5.1
1.6.0
Event History
Feb 14, 2024
Advisory Published
via F5·01:17 PM
Frequently Asked Questions
1
What is the severity of F5-K000132800?
The F5-K000132800 vulnerability is classified as a high severity directory traversal vulnerability.
2
How do I fix F5-K000132800?
To fix F5-K000132800, you should upgrade to F5OS-A version 1.4.0 or F5OS-C version 1.6.0 or later.
3
Who is affected by F5-K000132800?
F5-K000132800 affects users of F5OS-A versions 1.3.0 to 1.3.2 and F5OS-C versions 1.3.0 to 1.5.1.
4
Can an unauthenticated user exploit F5-K000132800?
No, F5-K000132800 can only be exploited by an authenticated user.
5
What type of files can be accessed due to F5-K000132800?
F5-K000132800 allows access to files outside the QKView directory.