CVE-2021-23004
- EPSS 0.65%
- Veröffentlicht 31.03.2021 18:15:15
- Zuletzt bearbeitet 21.11.2024 05:51:08
On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2, 14.1.x before 14.1.3.1, 13.1.x before 13.1.3.6, 12.1.x before 12.1.5.3, and 11.6.x before 11.6.5.3, Multipath TCP (MPTCP) forwarding flows may be created on standard virtual servers wit...
CVE-2021-23007
- EPSS 0.73%
- Veröffentlicht 31.03.2021 18:15:15
- Zuletzt bearbeitet 21.11.2024 05:51:08
On BIG-IP versions 14.1.4 and 16.0.1.1, when the Traffic Management Microkernel (TMM) process handles certain undisclosed traffic, it may start dropping all fragmented IP traffic. Note: Software versions which have reached End of Software Development...
CVE-2021-22991
- EPSS 66.26%
- Veröffentlicht 31.03.2021 18:15:14
- Zuletzt bearbeitet 27.10.2025 17:06:52
On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, and 12.1.x before 12.1.5.3, undisclosed requests to a virtual server may be incorrectly handled by the Traffic Management Microkernel (TM...
CVE-2021-22993
- EPSS 0.82%
- Veröffentlicht 31.03.2021 18:15:14
- Zuletzt bearbeitet 21.11.2024 05:51:05
On BIG-IP Advanced WAF and BIG-IP ASM versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2, 14.1.x before 14.1.3.1, 13.1.x before 13.1.3.6, and 12.1.x before 12.1.5.3, DOM-based XSS on DoS Profile properties page. Note: Software versions which have ...
CVE-2021-22994
- EPSS 0.32%
- Veröffentlicht 31.03.2021 18:15:14
- Zuletzt bearbeitet 21.11.2024 05:51:05
On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, 12.1.x before 12.1.5.3, and 11.6.x before 11.6.5.3, undisclosed endpoints in iControl REST allow for a reflected XSS attack, which could ...
CVE-2021-22992
- EPSS 7.78%
- Veröffentlicht 31.03.2021 17:15:13
- Zuletzt bearbeitet 21.11.2024 05:51:05
On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, 12.1.x before 12.1.5.3, and 11.6.x before 11.6.5.3, a malicious HTTP response to an Advanced WAF/BIG-IP ASM virtual server with Login Pag...
CVE-2021-22987
- EPSS 1.77%
- Veröffentlicht 31.03.2021 17:15:12
- Zuletzt bearbeitet 21.11.2024 05:51:04
On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, 12.1.x before 12.1.5.3, and 11.6.x before 11.6.5.3 when running in Appliance mode, the Traffic Management User Interface (TMUI), also ref...
CVE-2021-22989
- EPSS 1.37%
- Veröffentlicht 31.03.2021 17:15:12
- Zuletzt bearbeitet 21.11.2024 05:51:04
On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, 12.1.x before 12.1.5.3, and 11.6.x before 11.6.5.3, when running in Appliance mode with Advanced WAF or BIG-IP ASM provisioned, the TMUI,...
- EPSS 1.84%
- Veröffentlicht 31.03.2021 17:15:12
- Zuletzt bearbeitet 21.11.2024 05:51:04
On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, 12.1.x before 12.1.5.3, and 11.6.x before 11.6.5.3, on systems with Advanced WAF or BIG-IP ASM provisioned, the Traffic Management User I...
- EPSS 94.49%
- Veröffentlicht 31.03.2021 15:15:15
- Zuletzt bearbeitet 27.10.2025 17:06:56
On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, and 12.1.x before 12.1.5.3 amd BIG-IQ 7.1.0.x before 7.1.0.3 and 7.0.0.x before 7.0.0.2, the iControl REST interface has an unauthenticat...