CVE-2024-32049

Severity CVSS v4.0:
Pending analysis
Type:
CWE-300 Channel Accessible by Non-Endpoint
Publication date:
08/05/2024
Last modified:
12/12/2024

Description

BIG-IP Next Central Manager (CM) may allow an unauthenticated, remote attacker to obtain the BIG-IP Next LTM/WAF instance credentials. <br /> <br /> Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.<br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:f5:big-ip_next_central_manager:*:*:*:*:*:*:*:* 20.0.1 (including) 20.1.0 (excluding)