PT-2019-18228 · F5 · F5 Big-Ip+1

Published

2019-09-04

·

Updated

2020-08-24

·

CVE-2019-6646

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions F5 BIG-IP versions 11.5.2 through 11.6.4 F5 Enterprise Manager version 3.1.1
Description The issue allows REST users with guest privileges to potentially escalate their privileges and execute commands with admin privileges.
Recommendations For F5 BIG-IP versions 11.5.2 through 11.6.4, update to a version that includes a fix for this issue. For F5 Enterprise Manager version 3.1.1, update to a version that includes a fix for this issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2019-6646

Affected Products

F5 Big-Ip
F5 Enterprise Manager