F5

Big-ip Edge Gateway

213 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.22%
  • Veröffentlicht 27.03.2020 15:15:12
  • Zuletzt bearbeitet 21.11.2024 05:34:42

On BIG-IP 15.0.0-15.0.1.2, 14.1.0-14.1.2.2, 13.1.0-13.1.3.2, 12.1.0-12.1.5, and 11.5.2-11.6.5.1 and BIG-IQ 7.0.0, 6.0.0-6.1.0, and 5.2.0-5.4.0, users with non-administrator roles (for example, Guest or Resource Administrator) with tmsh shell access c...

Exploit
  • EPSS 14.66%
  • Veröffentlicht 21.02.2020 18:15:11
  • Zuletzt bearbeitet 21.11.2024 01:53:56

The HTTPS protocol, as used in unspecified web applications, can encrypt compressed data without properly obfuscating the length of the unencrypted data, which makes it easier for man-in-the-middle attackers to obtain plaintext secret values by obser...

  • EPSS 0.89%
  • Veröffentlicht 06.02.2020 16:15:12
  • Zuletzt bearbeitet 21.11.2024 05:34:42

On BIG-IP 15.0.0-15.0.1.1, 14.1.0-14.1.2.2, 14.0.0-14.0.1, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.6.0-11.6.5.1, the tmm crashes under certain circumstances when using the connector profile if a specific sequence of connections are made.

  • EPSS 0.9%
  • Veröffentlicht 14.01.2020 17:15:13
  • Zuletzt bearbeitet 21.11.2024 05:34:41

Undisclosed traffic patterns received may cause a disruption of service to the Traffic Management Microkernel (TMM). This vulnerability affects TMM through a virtual server configured with a FastL4 profile. Traffic processing is disrupted while TMM r...

  • EPSS 0.21%
  • Veröffentlicht 14.01.2020 16:15:11
  • Zuletzt bearbeitet 21.11.2024 05:34:41

On impacted versions and platforms the Trusted Platform Module (TPM) system integrity check cannot detect modifications to specific system components. This issue only impacts specific engineering hotfixes and platforms. NOTE: This vulnerability does ...

  • EPSS 0.53%
  • Veröffentlicht 08.01.2020 01:15:09
  • Zuletzt bearbeitet 21.11.2024 02:11:37

An Information Disclosure vulnerability exists in NTP 4.2.7p25 private (mode 6/7) messages via a GET_RESTRICT control message, which could let a malicious user obtain sensitive information.

  • EPSS 0.18%
  • Veröffentlicht 23.12.2019 19:15:11
  • Zuletzt bearbeitet 21.11.2024 04:34:15

On BIG-IP versions 15.0.0-15.1.0, 14.0.0-14.1.2.3, 13.1.0-13.1.3.2, 12.1.0-12.1.5, and 11.5.2-11.6.5.1, BIG-IQ versions 7.0.0, 6.0.0-6.1.0, and 5.0.0-5.4.0, iWorkflow version 2.3.0, and Enterprise Manager version 3.1.1, authenticated users granted TM...

  • EPSS 0.09%
  • Veröffentlicht 23.12.2019 18:15:11
  • Zuletzt bearbeitet 21.11.2024 04:46:56

On BIG-IP versions 15.0.0-15.0.1, 14.1.0.2-14.1.2.2, 14.0.0.5-14.0.1, 13.1.1.5-13.1.3.1, 12.1.4.1-12.1.5, 11.6.4-11.6.5, and 11.5.9-11.5.10, the access controls implemented by scp.whitelist and scp.blacklist are not properly enforced for paths that a...

  • EPSS 0.89%
  • Veröffentlicht 23.12.2019 18:15:11
  • Zuletzt bearbeitet 21.11.2024 04:46:57

On versions 15.0.0-15.0.1.1, 14.1.0-14.1.2.2, 14.0.0-14.0.1, 13.1.0-13.1.3.2, 12.1.0-12.1.5, and 11.5.2-11.6.5.1, BIG-IP virtual servers with Loose Initiation enabled on a FastL4 profile may be subject to excessive flow usage under undisclosed condit...

  • EPSS 0.18%
  • Veröffentlicht 23.12.2019 18:15:11
  • Zuletzt bearbeitet 21.11.2024 04:46:57

On BIG-IP versions 15.0.0-15.0.1.1, 14.1.0-14.1.2.2, 14.0.0-14.0.1, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.5.2-11.6.5.1, users with access to edit iRules are able to create iRules which can lead to an elevation of privilege, configuration modificatio...