When TACACS+ audit forwarding is configured on BIG-IP or BIG-IQ system, sharedsecret is logged in plaintext in the audit log. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-47900 | When TACACS+ audit forwarding is configured on BIG-IP or BIG-IQ system, sharedsecret is logged in plaintext in the audit log. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated. |
| Link | Providers |
|---|---|
| https://my.f5.com/manage/s/article/K06110200 |
|
Wed, 18 Sep 2024 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Subscriptions
Status: PUBLISHED
Assigner: f5
Published:
Updated: 2024-09-18T20:34:33.426Z
Reserved: 2023-10-05T19:17:34.501Z
Link: CVE-2023-43485
Updated: 2024-08-02T19:44:42.276Z
Status : Modified
Published: 2023-10-10T13:15:21.590
Modified: 2024-11-21T08:24:08.163
Link: CVE-2023-43485
No data.
OpenCVE Enrichment
No data.
EUVD