CVE-2020-5858
- EPSS 0.22%
- Veröffentlicht 27.03.2020 15:15:12
- Zuletzt bearbeitet 21.11.2024 05:34:42
On BIG-IP 15.0.0-15.0.1.2, 14.1.0-14.1.2.2, 13.1.0-13.1.3.2, 12.1.0-12.1.5, and 11.5.2-11.6.5.1 and BIG-IQ 7.0.0, 6.0.0-6.1.0, and 5.2.0-5.4.0, users with non-administrator roles (for example, Guest or Resource Administrator) with tmsh shell access c...
CVE-2013-3587
- EPSS 14.66%
- Veröffentlicht 21.02.2020 18:15:11
- Zuletzt bearbeitet 21.11.2024 01:53:56
The HTTPS protocol, as used in unspecified web applications, can encrypt compressed data without properly obfuscating the length of the unencrypted data, which makes it easier for man-in-the-middle attackers to obtain plaintext secret values by obser...
CVE-2020-5854
- EPSS 0.89%
- Veröffentlicht 06.02.2020 16:15:12
- Zuletzt bearbeitet 21.11.2024 05:34:42
On BIG-IP 15.0.0-15.0.1.1, 14.1.0-14.1.2.2, 14.0.0-14.0.1, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.6.0-11.6.5.1, the tmm crashes under certain circumstances when using the connector profile if a specific sequence of connections are made.
CVE-2020-5852
- EPSS 0.9%
- Veröffentlicht 14.01.2020 17:15:13
- Zuletzt bearbeitet 21.11.2024 05:34:41
Undisclosed traffic patterns received may cause a disruption of service to the Traffic Management Microkernel (TMM). This vulnerability affects TMM through a virtual server configured with a FastL4 profile. Traffic processing is disrupted while TMM r...
CVE-2020-5851
- EPSS 0.21%
- Veröffentlicht 14.01.2020 16:15:11
- Zuletzt bearbeitet 21.11.2024 05:34:41
On impacted versions and platforms the Trusted Platform Module (TPM) system integrity check cannot detect modifications to specific system components. This issue only impacts specific engineering hotfixes and platforms. NOTE: This vulnerability does ...
CVE-2014-5209
- EPSS 0.53%
- Veröffentlicht 08.01.2020 01:15:09
- Zuletzt bearbeitet 21.11.2024 02:11:37
An Information Disclosure vulnerability exists in NTP 4.2.7p25 private (mode 6/7) messages via a GET_RESTRICT control message, which could let a malicious user obtain sensitive information.
CVE-2019-19151
- EPSS 0.18%
- Veröffentlicht 23.12.2019 19:15:11
- Zuletzt bearbeitet 21.11.2024 04:34:15
On BIG-IP versions 15.0.0-15.1.0, 14.0.0-14.1.2.3, 13.1.0-13.1.3.2, 12.1.0-12.1.5, and 11.5.2-11.6.5.1, BIG-IQ versions 7.0.0, 6.0.0-6.1.0, and 5.0.0-5.4.0, iWorkflow version 2.3.0, and Enterprise Manager version 3.1.1, authenticated users granted TM...
CVE-2019-6679
- EPSS 0.09%
- Veröffentlicht 23.12.2019 18:15:11
- Zuletzt bearbeitet 21.11.2024 04:46:56
On BIG-IP versions 15.0.0-15.0.1, 14.1.0.2-14.1.2.2, 14.0.0.5-14.0.1, 13.1.1.5-13.1.3.1, 12.1.4.1-12.1.5, 11.6.4-11.6.5, and 11.5.9-11.5.10, the access controls implemented by scp.whitelist and scp.blacklist are not properly enforced for paths that a...
CVE-2019-6683
- EPSS 0.89%
- Veröffentlicht 23.12.2019 18:15:11
- Zuletzt bearbeitet 21.11.2024 04:46:57
On versions 15.0.0-15.0.1.1, 14.1.0-14.1.2.2, 14.0.0-14.0.1, 13.1.0-13.1.3.2, 12.1.0-12.1.5, and 11.5.2-11.6.5.1, BIG-IP virtual servers with Loose Initiation enabled on a FastL4 profile may be subject to excessive flow usage under undisclosed condit...
CVE-2019-6685
- EPSS 0.18%
- Veröffentlicht 23.12.2019 18:15:11
- Zuletzt bearbeitet 21.11.2024 04:46:57
On BIG-IP versions 15.0.0-15.0.1.1, 14.1.0-14.1.2.2, 14.0.0-14.0.1, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.5.2-11.6.5.1, users with access to edit iRules are able to create iRules which can lead to an elevation of privilege, configuration modificatio...