4.3

CVE-2020-5947

In versions 16.0.0-16.0.0.1 and 15.1.0-15.1.1, on specific BIG-IP platforms, attackers may be able to obtain TCP sequence numbers from the BIG-IP system that can be reused in future connections with the same source and destination port and IP numbers. Only these platforms are affected: BIG-IP 2000 series (C112), BIG-IP 4000 series (C113), BIG-IP i2000 series (C117), BIG-IP i4000 series (C115), BIG-IP Virtual Edition (VE).

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
F5Big-ip Access Policy Manager Version >= 15.0.0 < 15.1.2
   F5Big-ip Virtual Edition Version-
   F5Big-ip 2000 Versionc112
   F5Big-ip 4000 Versionc113
   F5Big-ip I2000 Versionc117
   F5Big-ip I4000 Versionc115
F5Big-ip Access Policy Manager Version >= 16.0.0 < 16.0.1
   F5Big-ip Virtual Edition Version-
   F5Big-ip 2000 Versionc112
   F5Big-ip 4000 Versionc113
   F5Big-ip I2000 Versionc117
   F5Big-ip I4000 Versionc115
F5Big-ip Advanced Firewall Manager Version >= 15.0.0 < 15.1.2
   F5Big-ip Virtual Edition Version-
   F5Big-ip 2000 Versionc112
   F5Big-ip 4000 Versionc113
   F5Big-ip I2000 Versionc117
   F5Big-ip I4000 Versionc115
F5Big-ip Advanced Firewall Manager Version >= 16.0.0 < 16.0.1
   F5Big-ip Virtual Edition Version-
   F5Big-ip 2000 Versionc112
   F5Big-ip 4000 Versionc113
   F5Big-ip I2000 Versionc117
   F5Big-ip I4000 Versionc115
F5Big-ip Advanced Web Application Firewall Version >= 15.0.0 < 15.1.2
   F5Big-ip Virtual Edition Version-
   F5Big-ip 2000 Versionc112
   F5Big-ip 4000 Versionc113
   F5Big-ip I2000 Versionc117
   F5Big-ip I4000 Versionc115
F5Big-ip Advanced Web Application Firewall Version >= 16.0.0 < 16.0.1
   F5Big-ip Virtual Edition Version-
   F5Big-ip 2000 Versionc112
   F5Big-ip 4000 Versionc113
   F5Big-ip I2000 Versionc117
   F5Big-ip I4000 Versionc115
F5Big-ip Analytics Version >= 15.0.0 < 15.1.2
   F5Big-ip Virtual Edition Version-
   F5Big-ip 2000 Versionc112
   F5Big-ip 4000 Versionc113
   F5Big-ip I2000 Versionc117
   F5Big-ip I4000 Versionc115
F5Big-ip Analytics Version >= 16.0.0 < 16.0.1
   F5Big-ip Virtual Edition Version-
   F5Big-ip 2000 Versionc112
   F5Big-ip 4000 Versionc113
   F5Big-ip I2000 Versionc117
   F5Big-ip I4000 Versionc115
F5Big-ip Application Acceleration Manager Version >= 15.0.0 < 15.1.2
   F5Big-ip Virtual Edition Version-
   F5Big-ip 2000 Versionc112
   F5Big-ip 4000 Versionc113
   F5Big-ip I2000 Versionc117
   F5Big-ip I4000 Versionc115
F5Big-ip Application Acceleration Manager Version >= 16.0.0 < 16.0.1
   F5Big-ip Virtual Edition Version-
   F5Big-ip 2000 Versionc112
   F5Big-ip 4000 Versionc113
   F5Big-ip I2000 Versionc117
   F5Big-ip I4000 Versionc115
F5Big-ip Application Security Manager Version >= 15.0.0 < 15.1.2
   F5Big-ip Virtual Edition Version-
   F5Big-ip 2000 Versionc112
   F5Big-ip 4000 Versionc113
   F5Big-ip I2000 Versionc117
   F5Big-ip I4000 Versionc115
F5Big-ip Application Security Manager Version >= 16.0.0 < 16.0.1
   F5Big-ip Virtual Edition Version-
   F5Big-ip 2000 Versionc112
   F5Big-ip 4000 Versionc113
   F5Big-ip I2000 Versionc117
   F5Big-ip I4000 Versionc115
F5Big-ip Ddos Hybrid Defender Version >= 15.0.0 < 15.1.2
   F5Big-ip Virtual Edition Version-
   F5Big-ip 2000 Versionc112
   F5Big-ip 4000 Versionc113
   F5Big-ip I2000 Versionc117
   F5Big-ip I4000 Versionc115
F5Big-ip Ddos Hybrid Defender Version >= 16.0.0 < 16.0.1
   F5Big-ip Virtual Edition Version-
   F5Big-ip 2000 Versionc112
   F5Big-ip 4000 Versionc113
   F5Big-ip I2000 Versionc117
   F5Big-ip I4000 Versionc115
F5Big-ip Domain Name System Version >= 15.0.0 < 15.1.2
   F5Big-ip Virtual Edition Version-
   F5Big-ip 2000 Versionc112
   F5Big-ip 4000 Versionc113
   F5Big-ip I2000 Versionc117
   F5Big-ip I4000 Versionc115
F5Big-ip Domain Name System Version >= 16.0.0 < 16.0.1
   F5Big-ip Virtual Edition Version-
   F5Big-ip 2000 Versionc112
   F5Big-ip 4000 Versionc113
   F5Big-ip I2000 Versionc117
   F5Big-ip I4000 Versionc115
F5Big-ip Fraud Protection Service Version >= 15.0.0 < 15.1.2
   F5Big-ip Virtual Edition Version-
   F5Big-ip 2000 Versionc112
   F5Big-ip 4000 Versionc113
   F5Big-ip I2000 Versionc117
   F5Big-ip I4000 Versionc115
F5Big-ip Fraud Protection Service Version >= 16.0.0 < 16.0.1
   F5Big-ip Virtual Edition Version-
   F5Big-ip 2000 Versionc112
   F5Big-ip 4000 Versionc113
   F5Big-ip I2000 Versionc117
   F5Big-ip I4000 Versionc115
F5Big-ip Global Traffic Manager Version >= 15.0.0 <= 15.1.2
   F5Big-ip Virtual Edition Version-
   F5Big-ip 2000 Versionc112
   F5Big-ip 4000 Versionc113
   F5Big-ip I2000 Versionc117
   F5Big-ip I4000 Versionc115
F5Big-ip Global Traffic Manager Version >= 16.0.0 < 16.0.1
   F5Big-ip Virtual Edition Version-
   F5Big-ip 2000 Versionc112
   F5Big-ip 4000 Versionc113
   F5Big-ip I2000 Versionc117
   F5Big-ip I4000 Versionc115
F5Big-ip Link Controller Version >= 15.0.0 < 15.1.2
   F5Big-ip Virtual Edition Version-
   F5Big-ip 2000 Versionc112
   F5Big-ip 4000 Versionc113
   F5Big-ip I2000 Versionc117
   F5Big-ip I4000 Versionc115
F5Big-ip Link Controller Version >= 16.0.0 < 16.0.1
   F5Big-ip Virtual Edition Version-
   F5Big-ip 2000 Versionc112
   F5Big-ip 4000 Versionc113
   F5Big-ip I2000 Versionc117
   F5Big-ip I4000 Versionc115
F5Big-ip Local Traffic Manager Version >= 15.0.0 < 15.1.2
   F5Big-ip Virtual Edition Version-
   F5Big-ip 2000 Versionc112
   F5Big-ip 4000 Versionc113
   F5Big-ip I2000 Versionc117
   F5Big-ip I4000 Versionc115
F5Big-ip Local Traffic Manager Version >= 16.0.0 < 16.0.1
   F5Big-ip Virtual Edition Version-
   F5Big-ip 2000 Versionc112
   F5Big-ip 4000 Versionc113
   F5Big-ip I2000 Versionc117
   F5Big-ip I4000 Versionc115
F5Big-ip Policy Enforcement Manager Version >= 15.0.0 < 15.1.2
   F5Big-ip Virtual Edition Version-
   F5Big-ip 2000 Versionc112
   F5Big-ip 4000 Versionc113
   F5Big-ip I2000 Versionc117
   F5Big-ip I4000 Versionc115
F5Big-ip Policy Enforcement Manager Version >= 16.0.0 < 16.0.1
   F5Big-ip Virtual Edition Version-
   F5Big-ip 2000 Versionc112
   F5Big-ip 4000 Versionc113
   F5Big-ip I2000 Versionc117
   F5Big-ip I4000 Versionc115
F5Ssl Orchestrator Version >= 15.0.0 < 15.1.2
   F5Big-ip Virtual Edition Version-
   F5Big-ip 2000 Versionc112
   F5Big-ip 4000 Versionc113
   F5Big-ip I2000 Versionc117
   F5Big-ip I4000 Versionc115
F5Ssl Orchestrator Version >= 16.0.0 < 16.0.1
   F5Big-ip Virtual Edition Version-
   F5Big-ip 2000 Versionc112
   F5Big-ip 4000 Versionc113
   F5Big-ip I2000 Versionc117
   F5Big-ip I4000 Versionc115
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.19% 0.371
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 4.3 2.8 1.4
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
nvd@nist.gov 4 8 2.9
AV:N/AC:L/Au:S/C:P/I:N/A:N