Last Modified: Dec 20, 2023
Affected Product(s):
BIG-IP ASM
Known Affected Versions:
16.0.0, 16.0.0.1, 16.0.1, 16.0.1.1, 16.0.1.2, 16.1.0, 16.1.1, 16.1.2, 16.1.2.1, 16.1.2.2, 16.1.3, 16.1.3.1, 16.1.3.2, 16.1.3.3, 16.1.3.4, 16.1.3.5, 16.1.4, 16.1.4.1, 16.1.4.2
Opened: May 03, 2020 Severity: 2-Critical
-- DataSafe credential protection does not work correctly with the logon page if Access Profile customization type is set to 'modern'. -- Submitted credentials fail to get populated in the authentication form. -- You do not complete the access policy.
Authentication is unsuccessful and the end user is unable to log in.
-- Options 'Substitute Value' and 'Obfuscate' are enabled under DataSafe Profile (Note: Default value is enabled for both attributes if APM logon page template is loaded). -- 'Modern' customization is used.
None.
None