Last Modified: Nov 22, 2021
Affected Product(s):
BIG-IP LTM
Known Affected Versions:
13.0.0
Fixed In:
13.0.0 HF1
Opened: Jan 24, 2017 Severity: 4-Minor
Mutable actions (delete, save, etc.) are available to roles with lower privilege than Manager.
The iRules LX filesystem can be modified by a non-privileged user.
Being logged in with a role with lower privileges than Manager allows access to mutable actions.
None.
The system now correctly enforce roles on the iRules LX Workspace editor page.
The system now enforces roles on the iRules LX Workspace editor page, so that users cannot add, delete, or save edits unless they have a role of Manager or higher.