Back to search
CVE-2017-6167
Published: Dec 21, 2017
Modified: Sep 17, 2024
PUBLISHED
Description
In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, Link Controller, PEM and WebSafe software version 13.0.0 and 12.1.0 - 12.1.2, race conditions in iControl REST may lead to commands being executed with different privilege levels than expected.
| Vendor | Product | Versions |
|---|---|---|
F5 Networks, Inc. | BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, Link Controller, PEM, WebSafe | affected 13.0.0affected 12.1.0 - 12.1.2 |
References
https://support.f5.com/csp/article/K24465120
x_refsource_CONFIRM
1040053
vdb-entry
x_refsource_SECTRACK
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now