First published: Wed May 08 2024(Updated: )
An OData injection vulnerability exists in the BIG-IP Next Central Manager API (URI).
Affected Software | Affected Version | How to fix |
---|---|---|
F5 BIG-IP Next Central Manager | >=20.0.1<=20.1.0 | 20.2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of F5-K000138732 is considered critical due to the potential for OData injection.
To fix F5-K000138732, upgrade your F5 BIG-IP Next Central Manager to a patched version above 20.1.0.
F5-K000138732 affects versions 20.0.1 to 20.1.0 of F5 BIG-IP Next Central Manager.
OData injection in F5-K000138732 refers to the manipulation of OData queries that can lead to unauthorized data access.
As of now, there are no confirmed reports of active exploitation for F5-K000138732, but it is recommended to apply mitigations immediately.