Vulnerabilities > CVE-2024-39809 - Insufficient Session Expiration vulnerability in F5 Big-Ip Next Central Manager 20.1.0
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
The Central Manager user session refresh token does not expire when a user logs out. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |