F5

Big-ip Application Acceleration Manager

444 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.33%
  • Veröffentlicht 14.09.2021 18:15:08
  • Zuletzt bearbeitet 21.11.2024 05:51:11

On version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3.1, 14.1.x before 14.1.4.2, 13.1.x before 13.1.4.1, and all versions of 12.1.x, a stored cross-site scripting (XSS) vulnerability exists in an undisclosed page of the BIG-IP Configuration utility...

  • EPSS 0.57%
  • Veröffentlicht 14.09.2021 18:15:08
  • Zuletzt bearbeitet 21.11.2024 05:51:12

On version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3, 14.1.x before 14.1.2.8, and all versions of 13.1.x and 12.1.x, when IPSec is configured on a BIG-IP system, undisclosed requests from an authorized remote (IPSec) peer, which already has a nego...

  • EPSS 0.65%
  • Veröffentlicht 14.09.2021 17:15:07
  • Zuletzt bearbeitet 21.11.2024 05:51:12

On BIG-IP version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3.1, 14.1.x before 14.1.4.3, 13.1.x before 13.1.4.1, and all versions of 12.1.x, when an SCTP profile with multiple paths is configured on a virtual server, undisclosed requests can cause t...

  • EPSS 0.89%
  • Veröffentlicht 14.09.2021 16:15:09
  • Zuletzt bearbeitet 21.11.2024 05:51:12

On BIG-IP version 16.x before 16.1.0, 15.1.x before 15.1.3.1, 14.1.x before 14.1.4.2, 13.1.x before 13.1.4.1, and all versions of 12.1.x and 11.6.x, when the Intel QuickAssist Technology (QAT) compression driver is used on affected BIG-IP hardware an...

  • EPSS 0.65%
  • Veröffentlicht 14.09.2021 15:15:07
  • Zuletzt bearbeitet 21.11.2024 05:51:12

On BIG-IP version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3, 14.1.x before 14.1.4, 13.1.x before 13.1.4, and 12.1.x before 12.1.6, when an HTTP profile is configured on a virtual server, undisclosed requests can cause a significant increase in sys...

  • EPSS 0.35%
  • Veröffentlicht 14.09.2021 15:15:07
  • Zuletzt bearbeitet 21.11.2024 05:51:12

On BIG-IP, on all versions of 16.1.x, 16.0.x, 15.1.x, 14.1.x, 13.1.x, 12.1.x, and 11.6.x, a directory traversal vulnerability exists in an undisclosed page of the BIG-IP Configuration utility that allows an attacker to access arbitrary files. Note: S...

  • EPSS 0.41%
  • Veröffentlicht 14.09.2021 14:15:10
  • Zuletzt bearbeitet 21.11.2024 05:51:12

On BIG-IP version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3, 14.1.x before 14.1.4.2, 13.1.x before 13.1.4.1, and all versions of 12.1.x, a DOM based cross-site scripting (XSS) vulnerability exists in an undisclosed page of the BIG-IP Configuration...

  • EPSS 0.89%
  • Veröffentlicht 14.09.2021 13:15:11
  • Zuletzt bearbeitet 21.11.2024 05:51:13

On BIG-IP version 16.0.x before 16.0.1.2 and 15.1.x before 15.1.3, when the iRules RESOLVER::summarize command is used on a virtual server, undisclosed requests can cause an increase in Traffic Management Microkernel (TMM) memory utilization resultin...

  • EPSS 0.65%
  • Veröffentlicht 14.09.2021 13:15:11
  • Zuletzt bearbeitet 21.11.2024 05:51:13

On BIG-IP versions 15.1.0.4 through 15.1.3, when the Data Plane Development Kit (DPDK)/Elastic Network Adapter (ENA) driver is used with BIG-IP on Amazon Web Services (AWS) systems, undisclosed requests can cause the Traffic Management Microkernel (T...

  • EPSS 0.89%
  • Veröffentlicht 14.09.2021 13:15:10
  • Zuletzt bearbeitet 21.11.2024 05:51:13

On BIG-IP version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3.1, 14.1.x before 14.1.4.3, 13.1.x before 13.1.4.1, and all versions of 12.1.x and 11.6.x, when GPRS Tunneling Protocol (GTP) iRules commands or a GTP profile is configured on a virtual se...