Back to search
CVE-2019-6614
Published: May 3, 2019
Modified: Aug 4, 2024
PUBLISHED
Description
On BIG-IP 14.0.0-14.1.0.1, 13.0.0-13.1.1.4, and 12.1.0-12.1.4, internal methods used to prevent arbitrary file overwrites in Appliance Mode were not fully effective. An authenticated attacker with a high privilege level may be able to bypass protections implemented in appliance mode to overwrite arbitrary system files.
| Vendor | Product | Versions |
|---|---|---|
F5 | BIG-IP (LTM, AAM, AFM, Analytics, APM, ASM, DNS, Edge Gateway, FPS, GTM, Link Controller, PEM, WebAccelerator) | affected 14.0.0-14.1.0.1affected 13.0.0-13.1.1.4affected 12.1.0-12.1.4 |
References
https://support.f5.com/csp/article/K46524395
x_refsource_CONFIRM
108297
vdb-entry
x_refsource_BID
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now