cbcvebase.
CVE-2019-6649
published 2019-09-20

CVE-2019-6649: F5 BIG-IP 15.0.0, 14.1.0-14.1.0.6, 14.0.0-14.0.0.5, 13.0.0-13.1.1.5, 12.1.0-12.1.4.1, 11.6.0-11.6.4, and 11.5.1-11.5.9 and Enterprise Manager 3.1.1 may expose…

critical9.1CVSS 3.1
AVNACLPRNUINSUCHIHAN
F5 BIG-IP 15.0.0, 14.1.0-14.1.0.6, 14.0.0-14.0.0.5, 13.0.0-13.1.1.5, 12.1.0-12.1.4.1, 11.6.0-11.6.4, and 11.5.1-11.5.9 and Enterprise Manager 3.1.1 may expose sensitive information and allow the system configuration to be modified when using non-default ConfigSync settings.

Affected

106 ranges· showing 25
VendorProductVersion rangeFixed in
f5big-ip_aam
f5big-ip_access_policy_manager
f5big-ip_access_policy_manager
f5big-ip_access_policy_manager
f5big-ip_access_policy_manager11.5.2 – 11.5.9
f5big-ip_access_policy_manager11.6.1 – 11.6.4
f5big-ip_access_policy_manager12.1.0 – 12.1.4
f5big-ip_access_policy_manager13.1.0 – 13.1.1
f5big-ip_advanced_firewall_manager
f5big-ip_advanced_firewall_manager
f5big-ip_advanced_firewall_manager
f5big-ip_advanced_firewall_manager11.5.2 – 11.5.9
f5big-ip_advanced_firewall_manager11.6.1 – 11.6.4
f5big-ip_advanced_firewall_manager12.1.0 – 12.1.4
f5big-ip_advanced_firewall_manager13.1.0 – 13.1.1
f5big-ip_afm
f5big-ip_analytics
f5big-ip_analytics
f5big-ip_analytics
f5big-ip_analytics
f5big-ip_analytics11.5.2 – 11.5.9
f5big-ip_analytics11.6.1 – 11.6.4
f5big-ip_analytics12.1.0 – 12.1.4
f5big-ip_analytics13.1.0 – 13.1.1
f5big-ip_apm