Operational Defect Database

BugZero found this defect 223 days ago.

F5 | 1366229

Leaked Credentials Action unexpectedly modified after XML-format policy export and re-import

Last update date:

4/26/2024

Affected products:

BIG-IP

BIG-IP ASM

Affected releases:

15.1.9

15.1.9.1

15.1.10

15.1.10.2

15.1.10.3

15.1.10.4

16.1.3

16.1.3.1

16.1.3.2

16.1.3.3

16.1.3.4

16.1.3.5

Fixed releases:

No fixed releases provided.

Description:

Conditions ... Create a /login.php and set the Leaked Credentials Action to "Alarm and Leaked Credential Page"/"Alarm and HoneyPot Page". ... Export and reimport the policy in XML format. ... Workaround ... Policy can be exported and reimported in Binary format. ... Issue is not seen with Binary format. ... Fix Information ... None

Additional Resources / Links

Share:

BugZero® Risk Score

What's this?

Coming soon

Status

Verified

Learn More

Search:

...