F5-K000140061: High severity f5 big-ip and big-iq centralized management vulnerability
Published Oct 16, 2024
·Updated
BIG-IP monitor functionality may allow an authenticated attacker with at least Manager role privileges to elevate their privileges and/or modify the configuration.
Affected Software
3 affected componentsFixes available
F5 BIG-IP>=17.1.0<=17.1.1
17.1.1.4
F5 BIG-IP>=16.1.0<=16.1.4
16.1.5
F5 BIG-IP>=15.1.0<=15.1.10
15.1.10.5
Event History
Oct 16, 2024
Advisory Published
via F5·01:28 PM
Frequently Asked Questions
1
What is the severity of F5-K000140061?
The severity of F5-K000140061 is considered high due to the potential for privilege escalation and configuration modification.
2
How do I fix F5-K000140061?
To fix F5-K000140061, upgrade your BIG-IP software to the recommended versions as specified in the advisory.
3
Who is affected by F5-K000140061?
F5-K000140061 affects F5 BIG-IP systems running specific versions as listed in the advisory.
4
What vulnerabilities does F5-K000140061 address?
F5-K000140061 addresses a vulnerability related to monitor functionality that allows privilege escalation for authenticated users.
5
What role must an attacker have to exploit F5-K000140061?
An attacker must have at least Manager role privileges to exploit the vulnerability identified in F5-K000140061.