CVE Database
/

CVE-2018-5546

Back to search

CVE-2018-5546

Published: Aug 17, 2018

Modified: Sep 17, 2024

PUBLISHED

Description

The svpn and policyserver components of the F5 BIG-IP APM client prior to version 7.1.7.1 for Linux and macOS runs as a privileged process and can allow an unprivileged user to get ownership of files owned by root on the local client host. A malicious local unprivileged user may gain knowledge of sensitive information, manipulate certain data, or assume super-user privileges on the local client host.

VendorProductVersions

F5 Networks, Inc.

BIG-IP APM client for Linux

affected
Prior to version 7.1.7.1

F5 Networks, Inc.

BIG-IP APM client for macOS

affected
Prior to version 7.1.7.1

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now