f5 big-ip-access-policy-manager CVE-2021-23046 vulnerability in F5 Networks Products
Published on September 14, 2021

On all versions of Guided Configuration before 8.0.0, when a configuration that contains secure properties is created and deployed from Access Guided Configuration (AGC), secure properties are logged in restnoded logs. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

NVD

Weakness Type

Insertion of Sensitive Information into Log File

Information written to log files can be of a sensitive nature and give valuable guidance to an attacker or expose sensitive user information.


Products Associated with CVE-2021-23046

stack.watch emails you whenever new vulnerabilities are published in F5 Networks Big Ip Access Policy Manager or F5 Networks Big Ip Guided Configuration. Just hit a watch button to start following.

 
 

Exploit Probability

EPSS
0.24%
Percentile
47.38%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.