|
|
Info |
Last Modified |
| 6 months ago |
|
|
|
|
Description |
BIG-IP contains a flaw that may allow a malicious user to bypass authenitication procedures. The issue is triggered when the configuration utility caches login credentials and does not check the entered password on subsequent sessions. It is possible that the flaw may allow unauthorized access resulting in a loss of integrity.
|
|
Classification |
Location:
Remote/Network Access Required
Attack Type:
Authentication Management
Impact:
Loss of Integrity
Exploit:
Exploit Unknown
Disclosure:
OSVDB Verified
|
|
Solution |
Upgrade to version 9.05 or higher, as it has been reported to fix this vulnerability. In addition, F5 Networks, Inc. has released a patch for some older versions.
|
|
Products |
|
BIG-IP
 |
9.02 |
9.03 |
9.04 |
|
|
|
|
Credit |
Unknown or Incomplete
|
|
BlogsProvided by Technorati
|
None found at this time
|
|
|