CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It affects F5, BIG-IP.
CVE
CVE-2017-6165
Severity
CRITICAL
CVSS
9.8
EPSS
1.93%
F5 BIG-IP
Original NVD Description
In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, GTM, Link Controller, PEM, and WebSafe 11.5.1 HF6 through 11.5.4 HF4, 11.6.0 through 11.6.1 HF1, and 12.0.0 through 12.1.2 on VIPRION platforms only, the script which synchronizes SafeNet External Network HSM configuration elements between blades in a clustered deployment will log the HSM partition password in cleartext to the "/var/log/ltm" log file.
Related CVEs
Other vulnerabilities affecting the same vendor(s)