CVE-2019-6688 vulnerability in F5 Networks Products
Published on December 23, 2019
On BIG-IP versions 15.0.0-15.0.1.1, 14.1.0-14.1.2.2, 14.0.0-14.0.1, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.5.2-11.6.5 and BIG-IQ versions 6.0.0-6.1.0 and 5.2.0-5.4.0, a user is able to obtain the secret that was being used to encrypt a BIG-IP UCS backup file while sending SNMP query to the BIG-IP or BIG-IQ system, however the user can not access to the UCS files.
Products Associated with CVE-2019-6688
Want to know whenever a new CVE is published for F5 Networks products? stack.watch will email you.
Affected Versions
F5 BIG-IP:- Version BIG-IP 15.0.0-15.0.1.1 is affected.
- Version 14.1.0-14.1.2.2 is affected.
- Version 14.0.0-14.0.1 is affected.
- Version 13.1.0-13.1.3.1 is affected.
- Version 12.1.0-12.1.5 is affected.
- Version 11.5.2-11.6.5 is affected.
- Version BIG-IQ 6.0.0-6.1.0 is affected.
- Version 5.2.0-5.4.0 is affected.
Exploit Probability
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.