F5-K000140006: Medium severity f5 big-ip next central manager vulnerability
When you generate a QKView file of a BIG-IP Next instance from the BIG-IP Next Central Manager, F5 iHealth credentials are logged in the BIG-IP Central Manager log file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of F5-K000140006?
The severity of F5-K000140006 is rated as important due to the exposure of sensitive F5 iHealth credentials in logs.
How do I fix F5-K000140006?
To address F5-K000140006, update to the latest version of the BIG-IP Next Central Manager that resolves this logging issue.
What versions are affected by F5-K000140006?
F5-K000140006 affects F5 BIG-IP Next Central Manager versions between 20.1.0 and 20.2.0 inclusive.
What information is exposed in F5-K000140006?
F5-K000140006 exposes F5 iHealth credentials when generating a QKView file from the BIG-IP Next Central Manager.
Is there a workaround for F5-K000140006?
Currently, the recommended solution for F5-K000140006 is to apply the latest software update, as there are no specific workarounds provided.