#VU27305 Improper Authentication in BIG-IQ Centralized Management - CVE-2020-5870
Published: April 24, 2020
BIG-IQ Centralized Management
F5 Networks
Description
The vulnerability allows a remote attacker to bypass authentication process.
The vulnerability exists due to the BIG-IQ high availability (HA) synchronization mechanisms do not use any form of authentication for connecting to the peer. A remote attacker on the local network can establish a connection to the BIG-IQ HA synchronization and compromise data.