F5-K000156642: High severity F5 BIG-IP vulnerability
A vulnerability exists in an undisclosed iControl REST and BIG-IP TMOS Shell (tmsh) command that may allow an authenticated attacker with at least the resource administrator role to execute arbitrary system commands with higher privileges. A successful exploit can allow the attacker to cross a security boundary.
Affected Software
Event History
Frequently Asked Questions
What is the severity of F5-K000156642?
The severity of F5-K000156642 is critical as it allows authenticated attackers to execute arbitrary system commands with higher privileges.
How do I fix F5-K000156642?
To fix F5-K000156642, upgrade to the recommended versions specified by F5, such as 17.5.1.317.1.3, 16.1.6.1, or 15.1.10.8.
Who is affected by F5-K000156642?
F5-K000156642 affects users of F5 BIG-IP versions between 17.5.0 and 17.5.1, 17.1.0 and 17.1.2, and 16.1.0 to 16.1.6.
What type of access is required for F5-K000156642 exploitation?
Exploitation of F5-K000156642 requires at least the resource administrator role for authenticated access.
What are the potential impacts of F5-K000156642?
The potential impacts of F5-K000156642 include unauthorized execution of system commands and possible security breaches.