Vulnerability Details CVE-2024-24966
When LDAP remote authentication is configured on F5OS, a remote user without an assigned role will be incorrectly authorized. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 41.9%
CVSS Severity
CVSS v3 Score 6.2
Products affected by CVE-2024-24966
-
cpe:2.3:o:f5:f5os-a:1.2.0
-
cpe:2.3:o:f5:f5os-c:1.3.0
-
cpe:2.3:o:f5:f5os-c:1.3.1
-
cpe:2.3:o:f5:f5os-c:1.3.2
-
cpe:2.3:o:f5:f5os-c:1.5.0
-
cpe:2.3:o:f5:f5os-c:1.5.1