Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.20089
Category:Web Servers
Title:F5 BIG-IP Cookie Persistence (HTTP) - Active Check
Summary:The remote load balancer suffers from an information disclosure; vulnerability.
Description:Summary:
The remote load balancer suffers from an information disclosure
vulnerability.

Vulnerability Insight:
The remote host appears to be a F5 BigIP load balancer which
encodes within a cookie the IP address of the actual web server it is acting on behalf of.
Additionally, information after 'BIGipServer' is configured by the user and may be the logical
name of the device. These values may disclose sensitive information, such as internal IP addresses
and names.

Solution:
Change the Cookie mode. Please see the references for more
information.

CVSS Score:
2.1

CVSS Vector:
AV:L/AC:L/Au:N/C:N/I:N/A:P

CopyrightCopyright (C) 2005 Shavlik Technologies, LLC

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.