F5

BIG-IP

115 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.32%
  • Veröffentlicht 15.10.2025 13:55:53
  • Zuletzt bearbeitet 08.10.2026 12:10:00

When a BIG-IP APM OAuth access profile (Resource Server or Resource Client) is configured on a virtual server, undisclosed traffic can cause the apmd process to terminate.  Note: Software versions which have reached End of Technical Support (EoTS) ar...

  • EPSS 0.37%
  • Veröffentlicht 15.10.2025 13:55:53
  • Zuletzt bearbeitet 08.10.2026 12:10:00

A vulnerability exists in the iHealth command that may allow an authenticated attacker with at least a resource administrator role to bypass tmsh restrictions and gain access to a bash shell.  For BIG-IP systems running in Appliance mode, a successfu...

Warnung Medienbericht
  • EPSS 2.21%
  • Veröffentlicht 15.10.2025 13:55:52
  • Zuletzt bearbeitet 08.10.2026 12:10:00

When a BIG-IP APM access policy is configured on a virtual server, specific malicious traffic can lead to Remote Code Execution (RCE).   Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

  • EPSS 0.32%
  • Veröffentlicht 15.10.2025 13:55:52
  • Zuletzt bearbeitet 08.10.2026 12:10:00

When the database variable tm.tcpudptxchecksum is configured as non-default value Software-only on a BIG-IP system, undisclosed traffic can cause the Traffic Management Microkernel (TMM) to terminate.  Note: Software versions which have reached End o...

Medienbericht
  • EPSS 0.42%
  • Veröffentlicht 15.10.2025 13:55:51
  • Zuletzt bearbeitet 08.10.2026 12:10:00

When running in Appliance mode, a highly privileged authenticated attacker with access to SCP and SFTP may be able to bypass Appliance mode restrictions using undisclosed commands.  Note: Software versions which have reached End of Technical Support ...

  • EPSS 0.32%
  • Veröffentlicht 15.10.2025 13:55:51
  • Zuletzt bearbeitet 08.10.2026 12:10:00

When a BIG-IP Advanced WAF or BIG-IP ASM Security Policy is configured with a JSON content profile that has a malformed JSON schema, and the security policy is applied to a virtual server, undisclosed requests can cause the bd process to terminate. ...

  • EPSS 0.22%
  • Veröffentlicht 15.10.2025 13:55:50
  • Zuletzt bearbeitet 08.10.2026 12:10:00

Undisclosed traffic can cause the Traffic Management Microkernel (TMM) to terminate.  This issue may occur when a Datagram Transport Layer Security (DTLS) 1.2 virtual server is enabled with a Server SSL profile that is configured with a certificate, ...

  • EPSS 0.33%
  • Veröffentlicht 15.10.2025 13:55:49
  • Zuletzt bearbeitet 08.10.2026 12:10:00

When a virtual server, network address translation (NAT) object, or secure network address translation (SNAT) object uses the embedded Packet Velocity Acceleration (ePVA) feature, undisclosed traffic can cause the Traffic Management Microkernel (TMM)...

  • EPSS 0.33%
  • Veröffentlicht 15.10.2025 13:55:49
  • Zuletzt bearbeitet 21.10.2025 19:50:56

When a classification profile is configured on a virtual server without an HTTP or HTTP/2 profile, undisclosed requests can cause the Traffic Management Microkernel (TMM) to terminate. Note: Software versions which have reached End of Technical Suppo...

  • EPSS 0.33%
  • Veröffentlicht 15.10.2025 13:55:48
  • Zuletzt bearbeitet 21.10.2025 19:49:43

When BIG-IP SSL Orchestrator is enabled, undisclosed traffic can cause the Traffic Management Microkernel (TMM) to terminate. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.