CVE Vulnerabilities

CVE-2014-3220

Published: May 05, 2014 | Modified: May 23, 2014
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9 HIGH
AV:N/AC:L/Au:S/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

F5 BIG-IQ Cloud and Security 4.0.0 through 4.1.0 allows remote authenticated users to change the password of arbitrary users via the name parameter in a request to the users page in mgmt/shared/authz/users/.

Affected Software

Name Vendor Start Version End Version
Big-iq F5 4.1.0.2013.0 (including) 4.1.0.2013.0 (including)

References