Vulnerability Name:
CVE-2015-4040 (CCN-106292)
Assigned:
2015-09-09
Published:
2015-09-09
Updated:
2016-12-08
Summary:
Directory traversal vulnerability in the configuration utility in F5 BIG-IP before 12.0.0 and Enterprise Manager 3.0.0 through 3.1.1 allows remote authenticated users to access arbitrary files in the web root via unspecified vectors.
CVSS v3 Severity:
4.3 Medium
(CCN CVSS v3.1 Vector:
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
)
3.8 Low
(CCN Temporal CVSS v3.1 Vector:
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N/E:U/RL:O/RC:C
)
Exploitability Metrics:
Attack Vector (AV):
Network
Attack Complexity (AC):
Low
Privileges Required (PR):
Low
User Interaction (UI):
None
Scope:
Scope (S):
Unchanged
Impact Metrics:
Confidentiality (C):
Low
Integrity (I):
None
Availibility (A):
None
CVSS v2 Severity:
4.0 Medium
(CVSS v2 Vector:
AV:N/AC:L/Au:S/C:P/I:N/A:N
)
Exploitability Metrics:
Access Vector (AV):
Network
Access Complexity (AC):
Low
Authentication (Au):
Single_Instance
Impact Metrics:
Confidentiality (C):
Partial
Integrity (I):
None
Availibility (A):
None
4.0 Medium
(CCN CVSS v2 Vector:
AV:N/AC:L/Au:S/C:P/I:N/A:N
)
Exploitability Metrics:
Access Vector (AV):
Network
Access Complexity (AC):
Low
Athentication (Au):
Single_Instance
Impact Metrics:
Confidentiality (C):
Partial
Integrity (I):
None
Availibility (A):
None
Vulnerability Type:
CWE-22
Vulnerability Consequences:
Obtain Information
References:
Source: MITRE
Type: CNA
CVE-2015-4040
Source: MISC
Type: UNKNOWN
http://packetstormsecurity.com/files/133931/F5-BigIP-10.2.4-Build-595.0-HF3-Path-Traversal.html
Source: CCN
Type: SECTRACK ID: 1033532
F5 BIG-IP Configuration Utility Bug Lets Remote Authenticated Users Traverse the Directory to View Certain Files on the Target System
Source: CCN
Type: SECTRACK ID: 1033533
F5 Enterprise Manager Configuration Utility Bug Lets Remote Authenticated Users Traverse the Directory to View Certain Files on the Target System
Source: SECTRACK
Type: UNKNOWN
1033532
Source: SECTRACK
Type: UNKNOWN
1033533
Source: XF
Type: UNKNOWN
bigip-cve20154040-dir-traversal(106292)
Source: CCN
Type: Packet Storm Security [10-12-2015]
F5 BigIP 10.2.4 Build 595.0 HF3 Path Traversal
Source: CCN
Type: F5 Security Advisory SOL17253
BIG-IP Configuration utility vulnerability CVE-2015-4040
Source: CONFIRM
Type: Vendor Advisory
https://support.f5.com/kb/en-us/solutions/public/17000/200/sol17253.html
Source: EXPLOIT-DB
Type: EXPLOIT
Offensive Security Exploit Database [10-13-2015]
Vulnerable Configuration:
Configuration 1
:
cpe:/a:f5:enterprise_manager:3.0.0:*:*:*:*:*:*:*
OR
cpe:/a:f5:enterprise_manager:3.1.0:*:*:*:*:*:*:*
OR
cpe:/a:f5:enterprise_manager:3.1.1:*:*:*:*:*:*:*
Configuration 2
:
cpe:/a:f5:big-ip_access_policy_manager:*:*:*:*:*:*:*:*
(Version <= 11.6.0)
OR
cpe:/a:f5:big-ip_advanced_firewall_manager:*:*:*:*:*:*:*:*
(Version <= 11.6.0)
OR
cpe:/a:f5:big-ip_analytics:*:*:*:*:*:*:*:*
(Version <= 11.6.0)
OR
cpe:/a:f5:big-ip_application_acceleration_manager:*:*:*:*:*:*:*:*
(Version <= 11.6.0)
OR
cpe:/a:f5:big-ip_application_security_manager:*:*:*:*:*:*:*:*
(Version <= 11.6.0)
OR
cpe:/a:f5:big-ip_edge_gateway:*:*:*:*:*:*:*:*
(Version <= 11.3.0)
OR
cpe:/a:f5:big-ip_global_traffic_manager:*:*:*:*:*:*:*:*
(Version <= 11.3.0)
OR
cpe:/a:f5:big-ip_link_controller:*:*:*:*:*:*:*:*
(Version <= 11.3.0)
OR
cpe:/a:f5:big-ip_local_traffic_manager:*:*:*:*:*:*:*:*
(Version <= 11.6.0)
OR
cpe:/a:f5:big-ip_policy_enforcement_manager:*:*:*:*:*:*:*:*
(Version <= 11.3.0)
OR
cpe:/a:f5:big-ip_protocol_security_module:*:*:*:*:*:*:*:*
(Version <= 11.3.0)
OR
cpe:/a:f5:big-ip_wan_optimization_manager:*:*:*:*:*:*:*:*
(Version <= 11.3.0)
OR
cpe:/a:f5:big-ip_webaccelerator:*:*:*:*:*:*:*:*
(Version <= 11.3.0)
Configuration CCN 1
:
cpe:/a:f5:enterprise_manager:3.0.0:*:*:*:*:*:*:*
OR
cpe:/a:f5:enterprise_manager:3.1.1:*:*:*:*:*:*:*
OR
cpe:/a:f5:big-ip_local_traffic_manager:11.6.0:*:*:*:*:*:*:*
OR
cpe:/a:f5:big-ip_local_traffic_manager:10.2.4:*:*:*:*:*:*:*
OR
cpe:/a:f5:big-ip_local_traffic_manager:10.1.0:*:*:*:*:*:*:*
Denotes that component is vulnerable
BACK
f5
enterprise manager 3.0.0
f5
enterprise manager 3.1.0
f5
enterprise manager 3.1.1
f5
big-ip access policy manager *
f5
big-ip advanced firewall manager *
f5
big-ip analytics *
f5
big-ip application acceleration manager *
f5
big-ip application security manager *
f5
big-ip edge gateway *
f5
big-ip global traffic manager *
f5
big-ip link controller *
f5
big-ip local traffic manager *
f5
big-ip policy enforcement manager *
f5
big-ip protocol security module *
f5
big-ip wan optimization manager *
f5
big-ip webaccelerator *
f5
enterprise manager 3.0.0
f5
enterprise manager 3.1.1
f5
big-ip local traffic manager 11.6.0
f5
big-ip local traffic manager 10.2.4
f5
big-ip local traffic manager 10.1.0