imPC@ndo IT

Tracker / CVE-2012-1493

CVE-2012-1493

High 7.8

F5 BIG-IP appliances 9.x before 9.4.8-HF5, 10.x before 10.2.4, 11.0.x before 11.0.0-HF2, and 11.1.x before 11.1.0-HF3, and Enterprise Manager before 2.1.0-HF2, 2.2.x before 2.2.0-HF1, and 2.3.x before 2.3.0-HF3, use a single SSH private key across different customers' installations and do not properly restrict access to this key, which makes it easier for remote attackers to perform SSH logins via the PubkeyAuthentication option.

Affected products and versions

f5 big-ip_1000
f5 big-ip_11000
f5 big-ip_11050
f5 big-ip_1500
f5 big-ip_1600
f5 big-ip_2400
f5 big-ip_3400
f5 big-ip_3410
f5 big-ip_3600
f5 big-ip_3900
f5 big-ip_4100
f5 big-ip_5100
f5 big-ip_5110
f5 big-ip_6400
f5 big-ip_6800
f5 big-ip_6900
f5 big-ip_8400
f5 big-ip_8800
f5 big-ip_8900
f5 big-ip_8950
f5 big-ip_application_security_manager
f5 big-ip_global_traffic_manager
f5 big-ip_local_traffic_manager
f5 enterprise_manager
f5 tmos

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References