F5-K83284425: Medium severity f5 big-ip and big-iq centralized management vulnerability
Incorrect permission assignment vulnerabilities exist in the iControl REST and TMOS shell (tmsh) dig command which may allow an authenticated attacker with resource administrator role privilege to view sensitive information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of F5-K83284425?
The vulnerability F5-K83284425 is classified as a medium severity issue due to its potential for exposing sensitive information.
How do I fix F5-K83284425?
To fix F5-K83284425, upgrade to the appropriate patched version of the F5 BIG-IP software as specified in the advisory.
Who is affected by F5-K83284425?
F5-K83284425 affects authenticated users with resource administrator role privilege on specific versions of F5 BIG-IP.
What type of information can be exposed by F5-K83284425?
F5-K83284425 may allow the exposure of sensitive information accessible to users with limited access rights.
Is there a workaround for F5-K83284425?
Currently, the advised mitigation for F5-K83284425 is to apply the necessary patches rather than relying on workarounds.