CVE-2012-1493

F5 BIG-IP appliances 9.x before 9.4.8-HF5, 10.x before 10.2.4, 11.0.x before 11.0.0-HF2, and 11.1.x before 11.1.0-HF3, and Enterprise Manager before 2.1.0-HF2, 2.2.x before 2.2.0-HF1, and 2.3.x before 2.3.0-HF3, use a single SSH private key across different customers' installations and do not properly restrict access to this key, which makes it easier for remote attackers to perform SSH logins via the PubkeyAuthentication option.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.8 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:C/I:N/A:N
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 99%
VendorProductVersion
f5big-ip_application_security_manager
9.2.0
f5big-ip_application_security_manager
9.2.0:hf4
f5big-ip_application_security_manager
9.4.4
f5big-ip_application_security_manager
9.4.5
f5big-ip_application_security_manager
9.4.6
f5big-ip_application_security_manager
9.4.7
f5big-ip_application_security_manager
9.4.8
f5big-ip_application_security_manager
10.0.0
f5big-ip_application_security_manager
10.0.1
f5big-ip_application_security_manager
10.2.3:hf1
f5big-ip_application_security_manager
11.0.0
f5big-ip_application_security_manager
11.0.0:hf1
f5big-ip_application_security_manager
11.1.0
f5big-ip_application_security_manager
11.1.0:hf2
f5big-ip_global_traffic_manager
*
f5big-ip_global_traffic_manager
9.2.2
f5big-ip_global_traffic_manager
9.4.8:hf4
f5big-ip_global_traffic_manager
10.0.0
f5big-ip_global_traffic_manager
10.2.3:hf1
f5big-ip_global_traffic_manager
11.0.0
f5big-ip_global_traffic_manager
11.0.0:hf1
f5big-ip_global_traffic_manager
11.1.0
f5big-ip_global_traffic_manager
11.1.0:hf2
f5big-ip_local_traffic_manager
*
f5big-ip_local_traffic_manager
9.0.0
f5big-ip_local_traffic_manager
9.4.8:hf4
f5big-ip_local_traffic_manager
10.0.0
f5big-ip_local_traffic_manager
10.2.3:hf1
f5big-ip_local_traffic_manager
11.0.0
f5big-ip_local_traffic_manager
11.0.0:hf1
f5big-ip_local_traffic_manager
11.1.0
f5big-ip_local_traffic_manager
11.1.0:hf2
f5tmos
*
f5tmos
2.0
f5tmos
4.0
f5tmos
4.2
f5tmos
4.3
f5tmos
4.4
f5tmos
4.5
f5tmos
4.5.6
f5tmos
4.5.9
f5tmos
4.5.10
f5tmos
4.5.11
f5tmos
4.5.12
f5tmos
4.6
f5tmos
4.6.2
f5tmos
9.0
f5tmos
9.0.1
f5tmos
9.0.2
f5tmos
9.0.3
f5tmos
9.0.4
f5tmos
9.0.5
f5tmos
9.1
f5tmos
9.1.1
f5tmos
9.1.2
f5tmos
9.1.3
f5tmos
9.2
f5tmos
9.2.2
f5tmos
9.2.3
f5tmos
9.2.4
f5tmos
9.2.5
f5tmos
9.3
f5tmos
9.3.1
f5tmos
9.4
f5tmos
9.4.1
f5tmos
9.4.2
f5tmos
9.4.3
f5tmos
9.4.4
f5tmos
9.4.5
f5tmos
9.4.6
f5tmos
9.4.7
f5tmos
9.4.8
f5tmos
9.6.0
f5tmos
9.6.1
f5tmos
10.0.0
f5tmos
10.0.1
f5tmos
10.1.0
f5tmos
10.2.0
f5big-ip_1000
*
f5big-ip_11000
*
f5big-ip_11050
*
f5big-ip_1500
*
f5big-ip_1600
*
f5big-ip_2400
*
f5big-ip_3400
*
f5big-ip_3410
*
f5big-ip_3600
*
f5big-ip_3900
*
f5big-ip_4100
*
f5big-ip_5100
*
f5big-ip_5110
*
f5big-ip_6400
*
f5big-ip_6800
*
f5big-ip_6900
*
f5big-ip_8400
*
f5big-ip_8800
*
f5big-ip_8900
*
f5big-ip_8950
*
f5enterprise_manager
*
f5enterprise_manager
1.0
f5enterprise_manager
2.0
f5enterprise_manager
2.1.0
f5enterprise_manager
2.1.0:hf1
f5enterprise_manager
2.2.0
f5enterprise_manager
2.3.0
f5enterprise_manager
2.3.0:hf2
f5enterprise_manager
*
f5enterprise_manager
1.0
f5enterprise_manager
2.0
f5enterprise_manager
2.1.0
f5enterprise_manager
2.1.0:hf1
f5enterprise_manager
2.2.0
f5enterprise_manager
2.3.0
f5enterprise_manager
2.3.0:hf2
𝑥
= Vulnerable software versions
Common Weakness Enumeration