F5-K000139656: Low severity f5 big-ip access policy manager vulnerability
A missing integrity check vulnerability exists in BIG-IP APM access policy endpoint inspection that may allow an attacker to bypass endpoint inspection checks for VPN connections initiated through the BIG-IP APM browser network access VPN client for Windows, macOS, and Linux.
Affected Software
Event History
Frequently Asked Questions
What is the severity of F5-K000139656?
F5-K000139656 is considered a critical vulnerability due to the potential for attackers to bypass endpoint inspection checks.
How do I fix F5-K000139656?
To fix F5-K000139656, upgrade your BIG-IP APM to versions 17.1.2, 16.1.5, or any appropriate patch released by F5.
What products are affected by F5-K000139656?
F5-K000139656 affects F5 BIG-IP APM versions including 17.1.0 to 17.1.1, 16.1.0 to 16.1.4, and 15.1.0 to 15.1.10.
What could an attacker accomplish by exploiting F5-K000139656?
By exploiting F5-K000139656, an attacker could potentially gain unauthorized access to VPN connections by bypassing security checks.
Is there a workaround for F5-K000139656 until a fix is applied?
Currently, there is no official workaround provided for F5-K000139656, making immediate patching essential.