#VU22977 Permissions, Privileges, and Access Controls in F5 Networks products - CVE-2019-6664
Published: November 26, 2019
BIG-IP
BIG-IP LTM
BIG-IP AFM
BIG-IP Analytics
BIG-IP APM
BIG-IP ASM
BIG-IP FPS
BIG-IP GTM
BIG-IP PEM
BIG-IP AAM
BIG-IP DNS
BIG-IP Edge Gateway
BIG-IP Link Controller
BIG-IP WebAccelerator
F5 Networks
Description
The vulnerability allows a remote attacker to gain access to otherwise restricted functionality.
The vulnerability exists due to network protections on the management port do not follow current best practices, under certain conditions. The default firewall rules for the management interface are not reliably reinstalled after first boot. As a result, a remote attacker can expose the management interface.