CVE-2018-5511
- EPSS 6.04%
- Veröffentlicht 13.04.2018 13:29:00
- Zuletzt bearbeitet 21.11.2024 04:08:57
On F5 BIG-IP 13.1.0-13.1.0.3 or 13.0.0, when authenticated administrative users execute commands in the Traffic Management User Interface (TMUI), also referred to as the BIG-IP Configuration utility, restrictions on allowed commands may not be enforc...
CVE-2018-5502
- EPSS 0.62%
- Veröffentlicht 22.03.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 04:08:55
On F5 BIG-IP versions 13.0.0 - 13.1.0.3, attackers may be able to disrupt services on the BIG-IP system with maliciously crafted client certificate. This vulnerability affects virtual servers associated with Client SSL profile which enables the use o...
CVE-2018-5504
- EPSS 3.09%
- Veröffentlicht 22.03.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 04:08:56
In some circumstances, the Traffic Management Microkernel (TMM) does not properly handle certain malformed Websockets requests/responses, which allows remote attackers to cause a denial-of-service (DoS) or possible remote code execution on the F5 BIG...
CVE-2018-5505
- EPSS 1.52%
- Veröffentlicht 22.03.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 04:08:56
On F5 BIG-IP versions 13.1.0 - 13.1.0.3, when ASM and AVR are both provisioned, TMM may restart while processing DNS requests when the virtual server is configured with a DNS profile and the Protocol setting is set to TCP.
CVE-2014-4024
- EPSS 0.6%
- Veröffentlicht 19.03.2018 21:29:00
- Zuletzt bearbeitet 21.11.2024 02:09:21
SSL virtual servers in F5 BIG-IP systems 10.x before 10.2.4 HF9, 11.x before 11.2.1 HF12, 11.3.0 before HF10, 11.4.0 before HF8, 11.4.1 before HF5, 11.5.0 before HF5, and 11.5.1 before HF5, when used with third-party Secure Sockets Layer (SSL) accele...
CVE-2017-6150
- EPSS 0.59%
- Veröffentlicht 01.03.2018 16:29:00
- Zuletzt bearbeitet 21.11.2024 03:29:08
Under certain conditions for F5 BIG-IP systems 13.0.0 or 12.1.0 - 12.1.3.1, using FastL4 profiles, when the Reassemble IP Fragments option is disabled (default), some specific large fragmented packets may restart the Traffic Management Microkernel (T...
CVE-2018-5500
- EPSS 0.68%
- Veröffentlicht 01.03.2018 16:29:00
- Zuletzt bearbeitet 21.11.2024 04:08:55
On F5 BIG-IP systems running 13.0.0, 12.1.0 - 12.1.3.1, or 11.6.1 - 11.6.2, every Multipath TCP (MCTCP) connection established leaks a small amount of memory. Virtual server using TCP profile with Multipath TCP (MCTCP) feature enabled will be affecte...
CVE-2018-5501
- EPSS 0.89%
- Veröffentlicht 01.03.2018 16:29:00
- Zuletzt bearbeitet 21.11.2024 04:08:55
In some circumstances, on F5 BIG-IP systems running 13.0.0, 12.1.0 - 12.1.3.1, any 11.6.x or 11.5.x release, or 11.2.1, TCP DNS profile allows excessive buffering due to lack of flow control.
CVE-2017-6132
- EPSS 2.16%
- Veröffentlicht 21.12.2017 17:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, GTM, Link Controller, PEM and Websafe software version 13.0.0, 12.0.0 to 12.1.2, 11.6.0 to 11.6.1 and 11.5.0 - 11.5.4, an undisclosed sequence of packets sent to BIG-IP High Availability state mir...
CVE-2017-6133
- EPSS 0.65%
- Veröffentlicht 21.12.2017 17:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, Link Controller, PEM and WebSafe software version 13.0.0 and 12.1.0 - 12.1.2, undisclosed HTTP requests may cause a denial of service.