Description
F5 BIG-IP appliances 9.x before 9.4.8-HF5, 10.x before 10.2.4, 11.0.x before 11.0.0-HF2, and 11.1.x before 11.1.0-HF3, and Enterprise Manager before 2.1.0-HF2, 2.2.x before 2.2.0-HF1, and 2.3.x before 2.3.0-HF3, use a single SSH private key across different customers' installations and do not properly restrict access to this key, which makes it easier for remote attackers to perform SSH logins via the PubkeyAuthentication option.
Published: 2012-07-09
Score: 7.8 High
EPSS: 84.4% High
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

No history.

Subscriptions

F5 Big-ip 1000 Big-ip 11000 Big-ip 11050 Big-ip 1500 Big-ip 1600 Big-ip 2400 Big-ip 3400 Big-ip 3410 Big-ip 3600 Big-ip 3900 Big-ip 4100 Big-ip 5100 Big-ip 5110 Big-ip 6400 Big-ip 6800 Big-ip 6900 Big-ip 8400 Big-ip 8800 Big-ip 8900 Big-ip 8950 Big-ip Application Security Manager Big-ip Global Traffic Manager Big-ip Local Traffic Manager Enterprise Manager Tmos
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-09-17T01:20:39.832Z

Reserved: 2012-03-01T00:00:00.000Z

Link: CVE-2012-1493

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2012-07-09T22:55:00.887

Modified: 2025-04-11T00:51:21.963

Link: CVE-2012-1493

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses