The Configuration utility in F5 BIG-IP systems 11.0.x, 11.1.x, 11.2.x before 11.2.1 HF16, 11.3.x, 11.4.x before 11.4.1 HF10, 11.5.x before 11.5.4 HF2, 1.6.x before 11.6.1, and 12.0.0 before HF1 allows remote administrators to read Access Policy Manager (APM) access logs via unspecified vectors.
No CVSS v3.1
Attack Vector Network
Attack Complexity Low
Privileges Required High
Scope Unchanged
Confidentiality Impact High
Integrity Impact None
Availability Impact None
User Interaction None
Access Vector Network
Access Complexity Low
Authentication Single
Confidentiality Impact Partial
Integrity Impact None
Availability Impact None
AV:N/AC:L/Au:S/C:P/I:N/A:N
Vendors | Products |
---|---|
F5 |
|
Configuration 1 [-]
|
Configuration 2 [-]
|
Configuration 3 [-]
|
Configuration 4 [-]
|
Configuration 5 [-]
|
Configuration 6 [-]
|
Configuration 7 [-]
|
Configuration 8 [-]
|
Configuration 9 [-]
|
Configuration 10 [-]
|
Configuration 11 [-]
|
Configuration 12 [-]
|
Configuration 13 [-]
|
Configuration 14 [-]
|
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/92671 | |
http://www.securitytracker.com/id/1036631 | Third Party Advisory VDB Entry |
https://support.f5.com/kb/en-us/solutions/public/k/31/sol31925518.html | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2016-08-26T14:00:00
Updated: 2016-11-25T19:57:01
Reserved: 2016-01-06T00:00:00
Link: CVE-2016-1497
JSON object: View
NVD Information
Status : Modified
Published: 2016-08-26T14:59:00.133
Modified: 2019-06-06T15:11:36.407
Link: CVE-2016-1497
JSON object: View
Redhat Information
No data.
CWE