CVE-2015-6546
- EPSS 0.32%
- Veröffentlicht 06.11.2015 18:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
The vCMP host in F5 BIG-IP Analytics, APM, ASM, GTM, Link Controller, and LTM 11.0.0 before 11.6.0, BIG-IP AAM 11.4.0 before 11.6.0, BIG-IP AFM and PEM 11.3.0 before 11.6.0, BIG-IP Edge Gateway, WebAccelerator, and WOM 11.0.0 through 11.3.0, BIG-IP P...
- EPSS 0.73%
- Veröffentlicht 18.09.2015 14:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
The FastL4 virtual server in F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, GTM, Link Controller, and PEM 11.3.0 through 11.5.2 and 11.6.0 through 11.6.0 HF4, BIG-IP Edge Gateway, WebAccelerator, and WOM 11.2.1 through 11.3.0, and BIG-IP PSM 11.2.1 th...
- EPSS 6.77%
- Veröffentlicht 17.09.2015 16:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
Directory traversal vulnerability in the configuration utility in F5 BIG-IP before 12.0.0 and Enterprise Manager 3.0.0 through 3.1.1 allows remote authenticated users to access arbitrary files in the web root via unspecified vectors.
CVE-2015-5058
- EPSS 0.82%
- Veröffentlicht 24.08.2015 14:59:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
Memory leak in the virtual server component in F5 Big-IP LTM, AAM, AFM, Analytics, APM, ASM, GTM, Link Controller, and PEM 11.5.x before 11.5.1 HF10, 11.5.3 before HF1, and 11.6.0 before HF5, BIG-IQ Cloud, Device, and Security 4.4.0 through 4.5.0, an...
CVE-2015-4047
- EPSS 3.59%
- Veröffentlicht 29.05.2015 15:59:19
- Zuletzt bearbeitet 12.04.2025 10:46:40
racoon/gssapi.c in IPsec-Tools 0.8.2 allows remote attackers to cause a denial of service (NULL pointer dereference and IKE daemon crash) via a series of crafted UDP requests.
CVE-2014-9326
- EPSS 0.22%
- Veröffentlicht 12.05.2015 19:59:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
The automatic signature update functionality in the (1) Phone Home feature in F5 BIG-IP LTM, AAM, AFM, Analytics, APM, GTM, and Link Controller 11.5.0 through 11.6.0, ASM 10.0.0 through 11.6.0, and PEM 11.3.0 through 11.6.0 and the (2) Call Home feat...
CVE-2014-8730
- EPSS 3.11%
- Veröffentlicht 10.12.2014 00:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
The SSL profiles component in F5 BIG-IP LTM, APM, and ASM 10.0.0 through 10.2.4 and 11.0.0 through 11.5.1, AAM 11.4.0 through 11.5.1, AFM 11.3.0 through 11.5.1, Analytics 11.0.0 through 11.5.1, Edge Gateway, WebAccelerator, and WOM 10.1.0 through 10....
CVE-2014-6032
- EPSS 2.46%
- Veröffentlicht 01.11.2014 23:55:09
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple XML External Entity (XXE) vulnerabilities in the Configuration utility in F5 BIG-IP LTM, ASM, GTM, and Link Controller 11.0 through 11.6.0 and 10.0.0 through 10.2.4, AAM 11.4.0 through 11.6.0, ARM 11.3.0 through 11.6.0, Analytics 11.0.0 thro...
CVE-2014-4023
- EPSS 0.41%
- Veröffentlicht 28.10.2014 14:55:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
Cross-site scripting (XSS) vulnerability in tmui/dashboard/echo.jsp in the Configuration utility in F5 BIG-IP LTM, APM, ASM, GTM, and Link Controller 11.0.0 before 11.6.0 and 10.1.0 through 10.2.4, AAM 11.4.0 before 11.6.0, AFM and PEM 11.3.0 before ...
CVE-2013-7408
- EPSS 0.64%
- Veröffentlicht 26.10.2014 20:55:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
F5 BIG-IP Analytics 11.x before 11.4.0 uses a predictable session cookie, which makes it easier for remote attackers to have unspecified impact by guessing the value.