Unrated severityNVD Advisory· Published Dec 24, 2020· Updated Aug 4, 2024
CVE-2020-27727
CVE-2020-27727
Description
On BIG-IP version 16.0.0-16.0.0.1, 15.1.0-15.1.0.5, 14.1.0-14.1.3, and 13.1.0-13.1.3.4, when an authenticated administrative user installs RPMs using the iAppsLX REST installer, the BIG-IP system does not sufficiently validate user input, allowing the user read access to the filesystem.
Affected products
2- F5 Networks/BIG-IPdescription
Patches
Vulnerability mechanics
References
1- support.f5.com/csp/article/K50343630mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.