Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-45226

Опубликовано: 10 окт. 2023
Источник: nvd
CVSS3: 7.4
EPSS Низкий

Описание

The BIG-IP SPK TMM (Traffic Management Module) f5-debug-sidecar and f5-debug-sshd containers contains hardcoded credentials that may allow an attacker with the ability to intercept traffic to impersonate the SPK Secure Shell (SSH) server on those containers. This is only exposed when ssh debug is enabled.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:f5:big-ip_next_service_proxy_for_kubernetes:1.5.0:*:*:*:*:*:*:*

EPSS

Процентиль: 68%
0.00572
Низкий

7.4 High

CVSS3

Дефекты

CWE-798

Связанные уязвимости

CVSS3: 7.4
github
больше 2 лет назад

The BIG-IP SPK TMM (Traffic Management Module) f5-debug-sidecar and f5-debug-sshd containers contains hardcoded credentials that may allow an attacker with the ability to intercept traffic to impersonate the SPK Secure Shell (SSH) server on those containers. This is only exposed when ssh debug is enabled.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated

CVSS3: 7.4
fstec
больше 2 лет назад

Уязвимость модуля управления трафиком (Traffic Management Module) средства контроля доступа и удаленной аутентификации BIG-IP, позволяющая нарушителю выдать себя за сервер SPK Secure Shell (SSH)

EPSS

Процентиль: 68%
0.00572
Низкий

7.4 High

CVSS3

Дефекты

CWE-798