CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 8.1. It affects BIG-IP.
CVE
CVE-2020-5906
Severity
HIGH
CVSS
8.1
EPSS
1.19%
BIG-IP
Original NVD Description
In versions 13.1.0-13.1.3.3, 12.1.0-12.1.5.2, and 11.6.1-11.6.5.2, the BIG-IP system does not properly enforce the access controls for the scp.blacklist files. This allows Admin and Resource Admin users with Secure Copy (SCP) protocol access to read and overwrite blacklisted files via SCP.
Related CVEs
Other vulnerabilities affecting the same vendor(s)