CVE-2017-6139

Published: Dic 21, 2017 Last Modified: Apr 20, 2025 EU-VD ID: EUVD-2017-15204 Aliases: GSD-2017-6139
ExploitDB:
Other exploit source:
Google Dorks:
MEDIUM 5,9
Attack Vector: network
Attack Complexity: high
Privileges Required: none
User Interaction: none
Scope: unchanged
Confidentiality: high
Integrity: none
Availability: none
MEDIUM 4,3
Access Vector: network
Access Complexity: medium
Authentication: none
Confidentiality: partial
Integrity: none
Availability: none

Description

AI Translation Available

In F5 BIG-IP APM software version 13.0.0 and 12.1.2, under rare conditions, the BIG-IP APM system appends log details when responding to client requests. Details in the log file can vary; customers running debug mode logging with BIG-IP APM are at highest risk.

EPSS (Exploit Prediction Scoring System)

Trend Analysis

EPSS (Exploit Prediction Scoring System)

Prevede la probabilità di sfruttamento basata su intelligence sulle minacce e sulle caratteristiche della vulnerabilità.

EPSS Score
0,0043
Percentile
0,6th
Updated

EPSS Score Trend (Last 90 Days)

532

Insertion of Sensitive Information into Log File

Incomplete
Common Consequences
Security Scopes Affected:
Confidentiality
Potential Impacts:
Read Application Data
Applicable Platforms
All platforms may be affected
View CWE Details
Application

Big-Ip Access Policy Manager by F5

cpe:2.3:a:f5:big-ip_access_policy_manager:12.1.2:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Big-Ip Access Policy Manager by F5

cpe:2.3:a:f5:big-ip_access_policy_manager:13.0.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
https://support.f5.com/csp/article/K45432295
Issue Tracking Mitigation Vendor Advisory
https://support.f5.com/csp/article/K45432295
http://www.securityfocus.com/bid/106186
http://www.securitytracker.com/id/1040055
Third Party Advisory VDB Entry
http://www.securitytracker.com/id/1040055
https://support.f5.com/csp/article/K45432295
Issue Tracking Mitigation Vendor Advisory
https://support.f5.com/csp/article/K45432295
http://www.securityfocus.com/bid/106186
http://www.securitytracker.com/id/1040055
Third Party Advisory VDB Entry
http://www.securitytracker.com/id/1040055