F5-K000154647: High severity F5 BIG-IP vulnerability
A vulnerability exists in the iHealth utility of the TMOS Shell (tmsh) that may allow an authenticated attacker with at least a resource administrator role to bypass tmsh restrictions and gain access to the Advanced Shell (bash). For BIG-IP systems running in Appliance mode, a successful exploit can allow the attacker to cross a security boundary.
Affected Software
Event History
Frequently Asked Questions
What is the severity of F5-K000154647?
The severity of F5-K000154647 is categorized as medium, as it allows authenticated attackers to bypass restrictions in the tmsh.
How do I fix F5-K000154647?
To fix F5-K000154647, you should upgrade to the patched versions 17.5.1.117.1.3, 16.1.6.1, or 15.1.10.8 depending on the affected BIG-IP software version.
Who is affected by F5-K000154647?
F5-K000154647 affects BIG-IP systems running versions 15.1.x, 16.1.x, and 17.1.x to 17.5.x.
What types of attacks can result from F5-K000154647?
The F5-K000154647 vulnerability can allow an authenticated attacker to access the Advanced Shell, potentially leading to unauthorized system control.
Is F5-K000154647 present in BIG-IP systems in Appliance mode?
Yes, F5-K000154647 specifically affects BIG-IP systems operating in Appliance mode.