#VU14462 Privilege escalation in BIG-IP APM - CVE-2018-5547
Published: August 17, 2018 / Updated: August 20, 2018
BIG-IP APM
F5 Networks
Description
The vulnerability allows a local attacker to gain elevated privileges on the target system.
The vulnerability exists due to F5 BIG-IP APM Client for Windows uses Legacy logon mode with a System account and displays a certificate user interface dialog box containing a link to the certificate policy. A local attacker can exploit the dialog box to gain administrator level privileges.