#VU15465 Security restrictions bypass in F5 Networks products - CVE-2018-15316
Published: October 22, 2018 / Updated: October 23, 2018
BIG-IP APM
APM Clients
BIG-IP Edge Client
F5 Networks
Description
The vulnerability allows a local attacker to bypass security restrictions on the target system.
The vulnerability exists due to the software loads the policy library with user permission and bypassing the endpoint checks. A local attacker can bypass the endpoint checks and modify data on the target system.
Remediation
Update BIG-IP APM Clients to version 7.1.7.
Update BIG-IP Edge Client to version 7170.