VYPR
Medium severity4.3NVD Advisory· Published Nov 1, 2019· Updated Jun 17, 2026

CVE-2019-6658

CVE-2019-6658

Description

On BIG-IP AFM 15.0.0-15.0.1, 14.0.0-14.1.2, 13.1.0-13.1.3.1, and 12.1.0-12.1.5, a vulnerability in the AFM configuration utility may allow any authenticated BIG-IP user to run an SQL injection attack.

Affected products

2
  • F5, Inc./BIG-IP AFMllm-create2 versions
    15.0.0-15.0.1, 14.0.0-14.1.2, 13.1.0-13.1.3.1, 12.1.0-12.1.5+ 1 more
    • (no CPE)range: 15.0.0-15.0.1, 14.0.0-14.1.2, 13.1.0-13.1.3.1, 12.1.0-12.1.5
    • (no CPE)range: 15.0.0-15.0.1

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.