Unauthenticated Remote Attackers May Obtain BIG-IP Next LTM/WAF Instance Credentials
CVE-2024-32049
7.4HIGH
What is CVE-2024-32049?
The F5 BIG-IP Next Central Manager (CM) is impacted by a vulnerability that could enable unauthenticated, remote attackers to gain access to the credentials of F5 BIG-IP Next Local Traffic Manager (LTM) and Web Application Firewall (WAF) instances. This security issue presents a critical risk to the integrity and confidentiality of the affected systems, permitting adversaries to potentially exploit sensitive information without proper authorization. It is essential for organizations using F5 products to assess their exposure and implement necessary mitigations.
Affected Version(s)
BIG-IP Next Central Manager 20.0.1 < 20.1.0