5.9
CVE-2022-28708
- EPSS 0.46%
- Published 05.05.2022 17:15:14
- Last modified 21.11.2024 06:57:46
- Source f5sirt@f5.com
- Teams watchlist Login
- Open Login
On F5 BIG-IP 16.1.x versions prior to 16.1.2.2 and 15.1.x versions prior to 15.1.5.1, when a BIG-IP DNS resolver-enabled, HTTP-Explicit or SOCKS profile is configured on a virtual server, an undisclosed DNS response can cause the Traffic Management Microkernel (TMM) process to terminate. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated
Data is provided by the National Vulnerability Database (NVD)
F5 ≫ Big-ip Access Policy Manager Version15.1.0
F5 ≫ Big-ip Access Policy Manager Version15.1.1
F5 ≫ Big-ip Access Policy Manager Version15.1.2
F5 ≫ Big-ip Access Policy Manager Version15.1.3
F5 ≫ Big-ip Access Policy Manager Version15.1.4
F5 ≫ Big-ip Access Policy Manager Version15.1.5
F5 ≫ Big-ip Access Policy Manager Version16.1.0
F5 ≫ Big-ip Access Policy Manager Version16.1.1
F5 ≫ Big-ip Access Policy Manager Version16.1.2
F5 ≫ Big-ip Advanced Firewall Manager Version15.1.0
F5 ≫ Big-ip Advanced Firewall Manager Version15.1.1
F5 ≫ Big-ip Advanced Firewall Manager Version15.1.2
F5 ≫ Big-ip Advanced Firewall Manager Version15.1.3
F5 ≫ Big-ip Advanced Firewall Manager Version15.1.4
F5 ≫ Big-ip Advanced Firewall Manager Version15.1.5
F5 ≫ Big-ip Advanced Firewall Manager Version16.1.0
F5 ≫ Big-ip Advanced Firewall Manager Version16.1.1
F5 ≫ Big-ip Advanced Firewall Manager Version16.1.2
F5 ≫ Big-ip Analytics Version15.1.0
F5 ≫ Big-ip Analytics Version15.1.1
F5 ≫ Big-ip Analytics Version15.1.2
F5 ≫ Big-ip Analytics Version15.1.3
F5 ≫ Big-ip Analytics Version15.1.4
F5 ≫ Big-ip Analytics Version15.1.5
F5 ≫ Big-ip Analytics Version16.1.0
F5 ≫ Big-ip Analytics Version16.1.1
F5 ≫ Big-ip Analytics Version16.1.2
F5 ≫ Big-ip Application Acceleration Manager Version15.1.0
F5 ≫ Big-ip Application Acceleration Manager Version15.1.1
F5 ≫ Big-ip Application Acceleration Manager Version15.1.2
F5 ≫ Big-ip Application Acceleration Manager Version15.1.3
F5 ≫ Big-ip Application Acceleration Manager Version15.1.4
F5 ≫ Big-ip Application Acceleration Manager Version15.1.5
F5 ≫ Big-ip Application Acceleration Manager Version16.1.0
F5 ≫ Big-ip Application Acceleration Manager Version16.1.1
F5 ≫ Big-ip Application Acceleration Manager Version16.1.2
F5 ≫ Big-ip Application Security Manager Version15.1.0
F5 ≫ Big-ip Application Security Manager Version15.1.1
F5 ≫ Big-ip Application Security Manager Version15.1.2
F5 ≫ Big-ip Application Security Manager Version15.1.3
F5 ≫ Big-ip Application Security Manager Version15.1.4
F5 ≫ Big-ip Application Security Manager Version15.1.5
F5 ≫ Big-ip Application Security Manager Version16.1.0
F5 ≫ Big-ip Application Security Manager Version16.1.1
F5 ≫ Big-ip Application Security Manager Version16.1.2
F5 ≫ Big-ip Domain Name System Version15.1.0
F5 ≫ Big-ip Domain Name System Version15.1.1
F5 ≫ Big-ip Domain Name System Version15.1.2
F5 ≫ Big-ip Domain Name System Version15.1.3
F5 ≫ Big-ip Domain Name System Version15.1.4
F5 ≫ Big-ip Domain Name System Version15.1.5
F5 ≫ Big-ip Domain Name System Version16.1.0
F5 ≫ Big-ip Domain Name System Version16.1.1
F5 ≫ Big-ip Domain Name System Version16.1.2
F5 ≫ Big-ip Fraud Protection Service Version15.1.0
F5 ≫ Big-ip Fraud Protection Service Version15.1.1
F5 ≫ Big-ip Fraud Protection Service Version15.1.2
F5 ≫ Big-ip Fraud Protection Service Version15.1.3
F5 ≫ Big-ip Fraud Protection Service Version15.1.4
F5 ≫ Big-ip Fraud Protection Service Version15.1.5
F5 ≫ Big-ip Fraud Protection Service Version16.1.0
F5 ≫ Big-ip Fraud Protection Service Version16.1.1
F5 ≫ Big-ip Fraud Protection Service Version16.1.2
F5 ≫ Big-ip Global Traffic Manager Version15.1.0
F5 ≫ Big-ip Global Traffic Manager Version15.1.1
F5 ≫ Big-ip Global Traffic Manager Version15.1.2
F5 ≫ Big-ip Global Traffic Manager Version15.1.3
F5 ≫ Big-ip Global Traffic Manager Version15.1.4
F5 ≫ Big-ip Global Traffic Manager Version15.1.5
F5 ≫ Big-ip Global Traffic Manager Version16.1.0
F5 ≫ Big-ip Global Traffic Manager Version16.1.1
F5 ≫ Big-ip Global Traffic Manager Version16.1.2
F5 ≫ Big-ip Link Controller Version15.1.0
F5 ≫ Big-ip Link Controller Version15.1.1
F5 ≫ Big-ip Link Controller Version15.1.2
F5 ≫ Big-ip Link Controller Version15.1.3
F5 ≫ Big-ip Link Controller Version15.1.4
F5 ≫ Big-ip Link Controller Version15.1.5
F5 ≫ Big-ip Link Controller Version16.1.0
F5 ≫ Big-ip Link Controller Version16.1.1
F5 ≫ Big-ip Link Controller Version16.1.2
F5 ≫ Big-ip Local Traffic Manager Version15.1.0
F5 ≫ Big-ip Local Traffic Manager Version15.1.1
F5 ≫ Big-ip Local Traffic Manager Version15.1.2
F5 ≫ Big-ip Local Traffic Manager Version15.1.3
F5 ≫ Big-ip Local Traffic Manager Version15.1.4
F5 ≫ Big-ip Local Traffic Manager Version15.1.5
F5 ≫ Big-ip Local Traffic Manager Version16.1.0
F5 ≫ Big-ip Local Traffic Manager Version16.1.1
F5 ≫ Big-ip Local Traffic Manager Version16.1.2
F5 ≫ Big-ip Policy Enforcement Manager Version15.1.0
F5 ≫ Big-ip Policy Enforcement Manager Version15.1.1
F5 ≫ Big-ip Policy Enforcement Manager Version15.1.2
F5 ≫ Big-ip Policy Enforcement Manager Version15.1.3
F5 ≫ Big-ip Policy Enforcement Manager Version15.1.4
F5 ≫ Big-ip Policy Enforcement Manager Version15.1.5
F5 ≫ Big-ip Policy Enforcement Manager Version16.1.0
F5 ≫ Big-ip Policy Enforcement Manager Version16.1.1
F5 ≫ Big-ip Policy Enforcement Manager Version16.1.2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.46% | 0.632 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 5.9 | 2.2 | 3.6 |
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
|
nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:N/A:P
|
f5sirt@f5.com | 5.9 | 2.2 | 3.6 |
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
|
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.