Description
On versions 15.1.0-15.1.0.1, 15.0.0-15.0.1.2, and 14.1.0-14.1.2.3, in BIG-IP APM portal access, a specially crafted HTTP request can lead to reflected XSS after the BIG-IP APM system rewrites the HTTP response from the untrusted backend server and sends it to the client.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-27043 | On versions 15.1.0-15.1.0.1, 15.0.0-15.0.1.2, and 14.1.0-14.1.2.3, in BIG-IP APM portal access, a specially crafted HTTP request can lead to reflected XSS after the BIG-IP APM system rewrites the HTTP response from the untrusted backend server and sends it to the client. |
References
| Link | Providers |
|---|---|
| https://support.f5.com/csp/article/K24415506 |
|
History
No history.
Status: PUBLISHED
Assigner: f5
Published:
Updated: 2024-08-04T08:47:41.008Z
Reserved: 2020-01-06T00:00:00.000Z
Link: CVE-2020-5889
No data.
Status : Modified
Published: 2020-04-30T21:15:17.353
Modified: 2024-11-21T05:34:46.393
Link: CVE-2020-5889
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD