CVE-2017-6163
- EPSS 1.52%
- Published 27.10.2017 14:29:00
- Last modified 20.04.2025 01:37:25
In F5 BIG-IP LTM, AAM, AFM, APM, ASM, Link Controller, PEM, PSM software version 12.0.0 to 12.1.2, 11.6.0 to 11.6.1, 11.4.0 to 11.5.4, when a virtual server uses the standard configuration of HTTP/2 or SPDY profile with Client SSL profile, and the cl...
CVE-2017-6141
- EPSS 0.65%
- Published 20.10.2017 15:29:00
- Last modified 20.04.2025 01:37:25
In F5 BIG-IP LTM, AAM, AFM, APM, ASM, Link Controller, PEM, and WebSafe 12.1.0 through 12.1.2, certain values in a TLS abbreviated handshake when using a client SSL profile with the Session Ticket option enabled may cause disruption of service to the...
CVE-2017-6145
- EPSS 0.37%
- Published 20.10.2017 15:29:00
- Last modified 20.04.2025 01:37:25
iControl REST in F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, Link Controller, PEM, and WebSafe 12.0.0 through 12.1.2 and 13.0.0 includes a service to convert authorization BIGIPAuthCookie cookies to X-F5-Auth-Token tokens. This service does no...
CVE-2017-6165
- EPSS 1.95%
- Published 20.10.2017 15:29:00
- Last modified 20.04.2025 01:37:25
In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, GTM, Link Controller, PEM, and WebSafe 11.5.1 HF6 through 11.5.4 HF4, 11.6.0 through 11.6.1 HF1, and 12.0.0 through 12.1.2 on VIPRION platforms only, the script which synchronizes SafeNet External...
CVE-2017-6147
- EPSS 0.68%
- Published 18.09.2017 17:29:01
- Last modified 20.04.2025 01:37:25
In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, Link Controller, PEM, and WebSafe 12.1.2-HF1 and 13.0.0, an undisclosed type of responses may cause TMM to restart, causing an interruption of service when "SSL Forward Proxy" setting is enabled i...
CVE-2016-7469
- EPSS 0.27%
- Published 09.06.2017 15:29:00
- Last modified 20.04.2025 01:37:25
A stored cross-site scripting (XSS) vulnerability in the Configuration utility device name change page in BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, Edge Gateway, GTM, Link Controller, PEM, PSM, WebAccelerator, WOM and WebSafe version 12.0.0 - 1...
CVE-2014-6031
- EPSS 0.47%
- Published 08.06.2017 16:29:00
- Last modified 20.04.2025 01:37:25
Buffer overflow in the mcpq daemon in F5 BIG-IP systems 10.x before 10.2.4 HF12, 11.x before 11.2.1 HF15, 11.3.x, 11.4.x before 11.4.1 HF9, 11.5.x before 11.5.2 HF1, and 11.6.0 before HF4, and Enterprise Manager 2.1.0 through 2.3.0 and 3.x before 3.1...
CVE-2017-6131
- EPSS 0.78%
- Published 23.05.2017 15:29:00
- Last modified 20.04.2025 01:37:25
In some circumstances, an F5 BIG-IP version 12.0.0 to 12.1.2 and 13.0.0 Azure cloud instance may contain a default administrative password which could be used to remotely log into the BIG-IP system. The impacted administrative account is the Azure in...
CVE-2016-7476
- EPSS 1.2%
- Published 11.05.2017 16:29:00
- Last modified 20.04.2025 01:37:25
The Traffic Management Microkernel (TMM) in F5 BIG-IP LTM, AAM, AFM, APM, ASM, GTM, Link Controller, PEM, PSM, and WebSafe 11.6.0 before 11.6.0 HF6, 11.5.0 before 11.5.3 HF2, and 11.3.0 before 11.4.1 HF10 may suffer from a memory leak while handling ...
CVE-2016-9250
- EPSS 0.61%
- Published 10.05.2017 14:29:00
- Last modified 20.04.2025 01:37:25
In F5 BIG-IP 11.2.1, 11.4.0 through 11.6.1, and 12.0.0 through 12.1.2, an unauthenticated user with access to the control plane may be able to delete arbitrary files through an undisclosed mechanism.