CVE-2017-0305
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
F5 SSL Intercept iApp version 1.5.0 - 1.5.7 is vulnerable to an unauthenticated, remote attack that may allow modification of the BIG-IP system configuration, extraction of sensitive system files, and possible remote command execution on the system when deployed using the Explicit Proxy feature plus SNAT Auto Map option for egress traffic.
F5 SSL Intercept iApp versión 1.5.0 - 1.5.7 es vulnerable a un ataque remoto no autenticado, que pueden permitir la modificación de la configuración del sistema BIG-IP, extracción de archivos de sistema sensibles y la posible ejecución de comandos remotos en el sistema cuando se despliega utilizando la funcionalidad Explicit Proxy más la opción SNAT Auto Map para el tráfico de salida.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2016-11-09 CVE Reserved
- 2017-04-06 CVE Published
- 2023-03-08 EPSS Updated
- 2024-08-05 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://support.f5.com/csp/article/K53244431 | 2019-10-03 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
F5 Search vendor "F5" | Ssl Intercept Iapp Search vendor "F5" for product "Ssl Intercept Iapp" | 1.5.0 Search vendor "F5" for product "Ssl Intercept Iapp" and version "1.5.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Ssl Intercept Iapp Search vendor "F5" for product "Ssl Intercept Iapp" | 1.5.7 Search vendor "F5" for product "Ssl Intercept Iapp" and version "1.5.7" | - |
Affected
|