F5-K000137365: SQL Injection
Published Oct 26, 2023
·Updated
An authenticated SQL injection vulnerability exists in the BIG-IP Configuration utility.
Affected Software
5 affected componentsFixes available
F5 BIG-IP>=17.1.0<=17.1.1
17.1.1.1
F5 BIG-IP>=16.1.0<=16.1.4
16.1.4.2
F5 BIG-IP>=15.1.0<=15.1.10
15.1.10.3
F5 BIG-IP>=14.1.0<=14.1.5
14.1.5.6
F5 BIG-IP>=13.1.0<=13.1.5
13.1.5.1
Event History
Oct 26, 2023
Advisory Published
via F5·06:55 PM
Frequently Asked Questions
1
What is the severity of F5-K000137365?
The vulnerability F5-K000137365 is classified as a high severity authenticated SQL injection vulnerability.
2
How do I fix F5-K000137365?
To remediate F5-K000137365, upgrade to the appropriate patched versions of the BIG-IP software, specifically the versions listed in the advisory.
3
Which products are affected by F5-K000137365?
F5-K000137365 affects multiple versions of the F5 BIG-IP product, including versions 17.1.x, 16.1.x, 15.1.x, 14.1.x, and 13.1.x.
4
Is F5-K000137365 an authenticated vulnerability?
Yes, F5-K000137365 requires authenticated access to exploit the SQL injection vulnerability.
5
What impact does F5-K000137365 have on my system?
Exploitation of F5-K000137365 could allow an attacker to execute arbitrary SQL queries, potentially leading to unauthorized access to sensitive data.