In some cases the MCPD binary cache in F5 BIG-IP devices may allow a user with Advanced Shell access, or privileges to generate a qkview, to temporarily obtain normally unrecoverable information.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
https://support.f5.com/csp/article/K52180214 | vendor advisory |
http://www.securityfocus.com/bid/97198 | vdb entry |
http://www.securitytracker.com/id/1038133 | vdb entry |