CVE-2016-7474

Severity
5.5MEDIUM
EPSS
0.1%
top 71.02%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 27
Latest updateMay 14

Description

In some cases the MCPD binary cache in F5 BIG-IP devices may allow a user with Advanced Shell access, or privileges to generate a qkview, to temporarily obtain normally unrecoverable information.

CVSS vector

CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NExploitability: 1.8 | Impact: 3.6

Affected Packages14 packages

NVDf5/big-ip_websafe5 versions+4
NVDf5/big-ip_analytics13 versions+12

🔴Vulnerability Details

2
GHSA
GHSA-4hch-v4cq-frwf: In some cases the MCPD binary cache in F5 BIG-IP devices may allow a user with Advanced Shell access, or privileges to generate a qkview, to temporari2022-05-14
CVEList
CVE-2016-7474: In some cases the MCPD binary cache in F5 BIG-IP devices may allow a user with Advanced Shell access, or privileges to generate a qkview, to temporari2017-03-27

📋Vendor Advisories

1
F5
CVE-2016-7474: In some cases the MCPD binary cache in F5 BIG-IP devices may allow a user with Advanced Shell access, or privileges t...2017-03-27
CVE-2016-7474 (MEDIUM CVSS 5.5) | In some cases the MCPD binary cache | cvebase.io