CVE-2023-41253

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Oct 10, 2023
Updated: Oct 17, 2023
CWE ID 532

Summary

CVE-2023-41253 refers to a vulnerability in F5 BIG-IP DNS and LTM systems with DNS Services License. When creating a TSIG key, the system logs the key in plaintext in the audit log, posing a security risk. Systems no longer receiving technical support are not assessed for this issue.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • F5 LTM
  • F5 Big-ip Domain Name System

Affected Vendors

  • F5 Networks