In F5 BIG-IP APM 13.0.0-13.1.1.1, APM Client 7.1.5-7.1.6, and/or Edge Client 7101-7160, the BIG-IP APM Edge Client component loads the policy library with user permission and bypassing the endpoint checks.
2018-10-19T13:29:00.587
2024-11-21T03:50:32.690
Modified
CVSSv3.0: 5.5 (MEDIUM)
AV:L/AC:L/Au:N/C:N/I:P/A:N
3.9
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | f5 | big-ip_access_policy_manager | ≤ 13.1.1.1 | Yes |
Application | f5 | big-ip_access_policy_manager_client | ≤ 7.1.6 | Yes |
Application | f5 | big-ip_edge_client | ≤ 7160 | Yes |