CVE-2019-6649 vulnerability in F5 Networks Products
Published on September 20, 2019
F5 BIG-IP 15.0.0, 14.1.0-14.1.0.6, 14.0.0-14.0.0.5, 13.0.0-13.1.1.5, 12.1.0-12.1.4.1, 11.6.0-11.6.4, and 11.5.1-11.5.9 and Enterprise Manager 3.1.1 may expose sensitive information and allow the system configuration to be modified when using non-default ConfigSync settings.
Products Associated with CVE-2019-6649
Want to know whenever a new CVE is published for F5 Networks products? stack.watch will email you.
Affected Versions
F5 Networks BIG-IP, Enterprise Manager:- Version BIG-IP 15.0.0 is affected.
- Version 14.1.0-14.1.0.6 is affected.
- Version 14.0.0-14.0.0.5 is affected.
- Version 13.0.0-13.1.1.5 is affected.
- Version 12.1.0-12.1.4.1 is affected.
- Version 11.6.0-11.6.4 is affected.
- Version 11.5.1-11.5.9 is affected.
- Version EM 3.1.1 is affected.
Exploit Probability
EPSS
0.52%
Percentile
66.54%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.