CVE-2025-36546

On an F5OS system, if the root user had previously configured the system to allow login via SSH key-based authentication, and then enabled Appliance Mode; access via SSH key-based authentication is still allowed. For an attacker to exploit this vulnerability they must obtain the root user's SSH private key.   Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
CVSS

No CVSS.

Configurations

No configuration.

History

07 May 2025, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-07 22:15

Updated : 2025-05-07 22:15


NVD link : CVE-2025-36546

Mitre link : CVE-2025-36546


JSON object : View

Products Affected

No product.

CWE
CWE-863

Incorrect Authorization