Last Modified: Jun 28, 2025
Affected Product(s):
BIG-IP ASM
Known Affected Versions:
17.1.0, 17.1.0.1, 17.1.0.2, 17.1.0.3, 17.1.1, 17.1.1.1, 17.1.1.2, 17.1.1.3, 17.1.1.4, 17.1.2, 17.1.2.1, 17.1.2.2
Fixed In:
17.5.1
Opened: Dec 30, 2024 Severity: 4-Minor
Importing a policy creates a default 'password' sensitive parameter when it is not present in the exported policy in full JSON mode
Unexpected sensitive parameter appears in imported policy
-- Create a policy with API security template. -- Delete the default "password" sensitive parameter. -- Export the policy in full JSON format. -- Import the policy again.
None
The policy is imported without sensitive parameters that do not appear in the full JSON policy