F5-K06110200: Medium severity f5 big-ip and big-iq centralized management vulnerability
When TACACS+ audit forwarding is configured on a BIG-IP or BIG-IQ system, shared secret is logged in plaintext in the audit log.
Affected Software
Event History
Frequently Asked Questions
What is the severity of F5-K06110200?
The vulnerability F5-K06110200 is considered a high severity issue due to the exposure of shared secrets in plaintext.
How do I fix F5-K06110200?
To resolve the F5-K06110200 vulnerability, upgrade your BIG-IP or BIG-IQ systems to the recommended versions that address this issue.
Which versions are affected by F5-K06110200?
F5-K06110200 affects multiple versions of BIG-IP and BIG-IQ, specifically those prior to the patched versions 17.1.0, 16.1.4, 15.1.9, and 8.3.0.
What is the impact of F5-K06110200 on my environment?
The impact of F5-K06110200 can include unauthorized access to sensitive information as the shared secret is logged in audit logs.
Is there a workaround for F5-K06110200 until I can update?
As of now, F5 does not provide a specific workaround for F5-K06110200, and it is strongly advised to patch the systems as soon as possible.