cbcvebase.
CVE-2025-23413
published 2025-02-05

CVE-2025-23413: When users log in through the webUI or API using local authentication, BIG-IP Next Central Manager may log sensitive information in the pgaudit log files…

medium6.7CVSS 4.0
AVLACLATNPRHUINVCHVINVANSCNSINSANEXCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUXRXVXREXUX
When users log in through the webUI or API using local authentication, BIG-IP Next Central Manager may log sensitive information in the pgaudit log files. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

Affected

3 ranges
VendorProductVersion rangeFixed in
f5big-ip_next_central_manager
f5big-ip_next_central_manager>= 20.1.0 < 20.3.020.3.0
f5big-ip_next_central_manager>= 20.2.0 < 20.3.020.3.0