Learn about CVE-2019-6679 affecting F5 BIG-IP versions 11.5.9-15.0.1. Discover the impact, affected systems, exploitation details, and mitigation steps to secure your systems.
A vulnerability in F5 BIG-IP versions 11.5.9-15.0.1 allows authenticated users with SCP access to overwrite restricted configuration files.
Understanding CVE-2019-6679
The vulnerability affects various versions of F5 BIG-IP, potentially leading to unauthorized configuration file modifications.
What is CVE-2019-6679?
The access controls for symlinks paths are inadequately enforced on affected F5 BIG-IP versions, enabling authenticated users to overwrite restricted configuration files.
The Impact of CVE-2019-6679
The vulnerability could be exploited by authenticated users with SCP access to modify critical configuration files, leading to unauthorized changes and potential system compromise.
Technical Details of CVE-2019-6679
The vulnerability details and affected systems are outlined below:
Vulnerability Description
The access controls for symlink paths are not properly enforced on F5 BIG-IP versions 11.5.9-15.0.1, allowing authenticated users with SCP access to overwrite restricted configuration files.
Affected Systems and Versions
Exploitation Mechanism
The vulnerability allows authenticated users with SCP access to bypass access controls and modify configuration files that should be restricted.
Mitigation and Prevention
To address CVE-2019-6679, follow these steps:
Immediate Steps to Take
Long-Term Security Practices
Patching and Updates