Cleartext Transmission of Sensitive Information
On BIG-IP 15.0.0-22.214.171.124, 14.1.0-126.96.36.199, 13.1.0-188.8.131.52, 12.1.0-184.108.40.206, and 11.6.1-220.127.116.11, a race condition exists where mcpd and other processes may make unencrypted connection attempts to a new configuration sync peer. The race condition can occur when changing the ConfigSync IP address of a peer, adding a new peer, or when the Traffic Management Microkernel (TMM) first starts up.
CWE-319 - Cleartext Transmission of Sensitive Information
The software transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.