Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
On versions 15.0.0-15.1.0.1, 14.1.0-14.1.2.3, 13.1.0-13.1.3.3, and 12.1.0-12.1.5.1, BIG-IP systems setup for connection mirroring in a High Availability (HA) pair transfers sensitive cryptographic objects over an insecure communications channel. This is a control plane issue which is exposed only on the network used for connection mirroring.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
F5 BIG-IP 加密问题漏洞
Vulnerability Description
F5 BIG-IP是美国F5公司的一款集成了网络流量管理、应用程序安全管理、负载均衡等功能的应用交付平台。 F5 BIG-IP系统中存在安全漏洞,该漏洞源于程序使用不安全的通信信道传输敏感加密对象。远程攻击者可利用该漏洞读取和修改Diffie-Hellman(DH)参数。以下产品及版本受到影响:F5 BIG-IP 15.0.0版本至15.1.0.1版本,14.1.0版本至14.1.2.3版本,13.1.0版本至13.1.3.3版本,12.1.0版本至12.1.5.1版本。
CVSS Information
N/A
Vulnerability Type
N/A