When running in Appliance mode, an authenticated attacker assigned the Administrator role may be able to bypass Appliance mode restrictions utilizing iAppsLX templates on a BIG-IP system. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated
A product incorrectly assigns a privilege to a particular actor, creating an unintended sphere of control for that actor.
| Name | Vendor | Start Version | End Version | 
|---|---|---|---|
| Big-ip_access_policy_manager | F5 | 15.1.0 (including) | 15.1.9 (excluding) | 
| Big-ip_access_policy_manager | F5 | 16.1.0 (including) | 16.1.4 (excluding) | 
| Big-ip_access_policy_manager | F5 | 17.1.0 (including) | 17.1.0 (including) |