CVE-2016-3687
- EPSS 0.37%
- Published 16.06.2016 18:59:09
- Last modified 12.04.2025 10:46:40
Open redirect vulnerability in F5 BIG-IP APM 11.2.1, 11.4.x, 11.5.x, and 11.6.x before 11.6.0 HF6 and Edge Gateway 11.2.1, when using multi-domain single sign-on (SSO), allows remote attackers to redirect users to arbitrary web sites and conduct phis...
CVE-2016-4545
- EPSS 1.72%
- Published 07.06.2016 18:59:04
- Last modified 12.04.2025 10:46:40
Virtual servers in F5 BIG-IP 11.5.4, when SSL profiles are enabled, allow remote attackers to cause a denial of service (resource consumption and Traffic Management Microkernel restart) via an SSL alert during the handshake.
CVE-2015-8099
- EPSS 1.05%
- Published 13.05.2016 16:59:05
- Last modified 12.04.2025 10:46:40
F5 BIG-IP LTM, AFM, Analytics, APM, ASM, Link Controller, and PEM 11.3.x, 11.4.x before 11.4.1 HF10, 11.5.x before 11.5.4, 11.6.x before 11.6.1, and 12.x before 12.0.0 HF1; BIG-IP AAM 11.4.x before 11.4.1 HF10, 11.5.x before 11.5.4, 11.6.x before 11....
CVE-2016-3686
- EPSS 0.5%
- Published 13.04.2016 16:59:21
- Last modified 12.04.2025 10:46:40
The Single Sign-On (SSO) feature in F5 BIG-IP APM 11.x before 11.6.0 HF6 and BIG-IP Edge Gateway 11.0.0 through 11.3.0 might allow remote attackers to obtain sensitive SessionId information by leveraging access to the Location HTTP header in a redire...
CVE-2016-2084
- EPSS 0.48%
- Published 13.04.2016 16:59:10
- Last modified 12.04.2025 10:46:40
F5 BIG-IP LTM, AFM, Analytics, APM, ASM, Link Controller, and PEM 11.3.x, 11.4.x before 11.4.1 build 685-HF10, 11.5.1 before build 10.104.180, 11.5.2 before 11.5.4 build 0.1.256, 11.6.0 before build 6.204.442, and 12.0.0 before build 1.14.628; BIG-IP...
CVE-2015-8021
- EPSS 0.11%
- Published 12.04.2016 14:59:02
- Last modified 12.04.2025 10:46:40
Incomplete blacklist vulnerability in the Configuration utility in F5 BIG-IP LTM, Analytics, APM, ASM, GTM, Link Controller, and PSM 11.x before 11.2.1 HF11, 11.3.x, 11.4.0 before HF8, and 11.4.1 before HF6; BIG-IP AAM 11.4.0 before HF8 and 11.4.1 be...
CVE-2015-8240
- EPSS 1.2%
- Published 11.04.2016 14:59:00
- Last modified 12.04.2025 10:46:40
The Traffic Management Microkernel (TMM) in F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, GTM, Link Controller, and BIG-IP PEM before 11.4.1 HF10, 11.5.x before 11.5.4, and 11.6.x before 11.6.0 HF6 and BIG-IP PSM before 11.4.1 HF10 does not properly ...
CVE-2015-7547
- EPSS 93.42%
- Published 18.02.2016 21:59:00
- Last modified 12.04.2025 10:46:40
Multiple stack-based buffer overflows in the (1) send_dg and (2) send_vc functions in the libresolv library in the GNU C Library (aka glibc or libc6) before 2.23 allow remote attackers to cause a denial of service (crash) or possibly execute arbitrar...
CVE-2015-5516
- EPSS 1.62%
- Published 20.01.2016 16:59:01
- Last modified 12.04.2025 10:46:40
Memory leak in the last hop kernel module in F5 BIG-IP LTM, GTM, and Link Controller 10.1.x, 10.2.x before 10.2.4 HF13, 11.x before 11.2.1 HF15, 11.3.x, 11.4.x, 11.5.x before 11.5.3 HF2, and 11.6.x before HF6, BIG-IP AAM 11.4.x, 11.5.x before 11.5.3 ...
- EPSS 3.57%
- Published 12.01.2016 20:59:04
- Last modified 12.04.2025 10:46:40
BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, Link Controller, and PEM 12.0.0 before HF1 on the 2000, 4000, 5000, 7000, and 10000 platforms do not properly sync passwords with the Always-On Management (AOM) subsystem, which might allow remote attac...