Privilege Escalation in F5 BIG-IP Products
CVE-2015-8022
7.5HIGH
What is CVE-2015-8022?
A vulnerability exists in the configuration utility of F5 BIG-IP products that enables remote authenticated users, possessing certain permissions, to elevate their privileges. This is achieved by exploiting a customization configuration section within the Access Policy Manager, which permits file uploads. Such an oversight could allow non-administrative users to access sensitive functions that should remain restricted.