CVE-2019-6685 vulnerability in F5 Networks Products
Published on December 23, 2019
On BIG-IP versions 15.0.0-15.0.1.1, 14.1.0-14.1.2.2, 14.0.0-14.0.1, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.5.2-11.6.5.1, users with access to edit iRules are able to create iRules which can lead to an elevation of privilege, configuration modification, and arbitrary system command execution.
Products Associated with CVE-2019-6685
Want to know whenever a new CVE is published for F5 Networks products? stack.watch will email you.
Affected Versions
F5 BIG-IP:- Version 15.0.0-15.0.1.1 is affected.
- Version 14.1.0-14.1.2.2 is affected.
- Version 14.0.0-14.0.1 is affected.
- Version 13.1.0-13.1.3.1 is affected.
- Version 12.1.0-12.1.5 is affected.
- Version 11.5.2-11.6.5.1 is affected.
Exploit Probability
EPSS
0.18%
Percentile
38.79%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.