CVE-2018-15318
- EPSS 0.61%
- Published 31.10.2018 14:29:00
- Last modified 21.11.2024 03:50:33
In BIG-IP 14.0.0-14.0.0.2, 13.1.0.4-13.1.1.1, or 12.1.3.4-12.1.3.6, If an MPTCP connection receives an abort signal while the initial flow is not the primary flow, the initial flow will remain after the closing procedure is complete. TMM may restart ...
CVE-2018-15319
- EPSS 0.59%
- Published 31.10.2018 14:29:00
- Last modified 21.11.2024 03:50:33
On BIG-IP 14.0.0-14.0.0.2, 13.0.0-13.1.1.1, or 12.1.0-12.1.3.6, malicious requests made to virtual servers with an HTTP profile can cause the TMM to restart. The issue is exposed with the non-default "normalize URI" configuration options used in iRul...
CVE-2018-15320
- EPSS 0.68%
- Published 31.10.2018 14:29:00
- Last modified 21.11.2024 03:50:33
On BIG-IP 14.0.0-14.0.0.2 or 13.0.0-13.1.1.1, undisclosed traffic patterns may lead to denial of service conditions for the BIG-IP system. The configuration which exposes this condition is the BIG-IP self IP address which is part of a VLAN group and ...
CVE-2018-15321
- EPSS 0.19%
- Published 31.10.2018 14:29:00
- Last modified 21.11.2024 03:50:33
When BIG-IP 14.0.0-14.0.0.2, 13.0.0-13.1.0.5, 12.1.0-12.1.3.5, 11.6.0-11.6.3.2, or 11.2.1-11.5.6, BIG-IQ Centralized Management 5.0.0-5.4.0 or 4.6.0, BIG-IQ Cloud and Orchestration 1.0.0, iWorkflow 2.1.0-2.3.0, or Enterprise Manager 3.1.1 is licensed...
CVE-2018-15322
- EPSS 0.3%
- Published 31.10.2018 14:29:00
- Last modified 21.11.2024 03:50:33
On BIG-IP 14.0.0-14.0.0.2, 13.0.0-13.1.0.7, 12.1.0-12.1.3.5, 11.6.0-11.6.3.2, or 11.2.1-11.5.6, BIG-IQ Centralized Management 6.0.0-6.0.1, 5.0.0-5.4.0 or 4.6.0, BIG-IQ Cloud and Orchestration 1.0.0, iWorkflow 2.0.1-2.3.0, or Enterprise Manager 3.1.1 ...
CVE-2018-15323
- EPSS 0.65%
- Published 31.10.2018 14:29:00
- Last modified 21.11.2024 03:50:33
On BIG-IP 14.0.0-14.0.0.2 or 13.0.0-13.1.1.1, in certain circumstances, when processing traffic through a Virtual Server with an associated MQTT profile, the TMM process may produce a core file and take the configured HA action.
CVE-2018-15325
- EPSS 0.28%
- Published 31.10.2018 14:29:00
- Last modified 21.11.2024 03:50:33
In BIG-IP 14.0.0-14.0.0.2 or 13.0.0-13.1.1.1, iControl and TMSH usage by authenticated users may leak a small amount of memory when executing commands
CVE-2018-15327
- EPSS 0.28%
- Published 31.10.2018 14:29:00
- Last modified 21.11.2024 03:50:34
In BIG-IP 14.0.0-14.0.0.2 or 13.0.0-13.1.1.1 or Enterprise Manager 3.1.1, when authenticated administrative users run commands in the Traffic Management User Interface (TMUI), also referred to as the BIG-IP Configuration utility, restrictions on allo...
CVE-2018-15312
- EPSS 0.26%
- Published 19.10.2018 13:29:00
- Last modified 21.11.2024 03:50:32
On F5 BIG-IP 13.0.0-13.1.1.1 and 12.1.0-12.1.3.6, a reflected Cross-Site Scripting (XSS) vulnerability exists in an undisclosed page of the BIG-IP Configuration utility that allows an authenticated user to execute JavaScript for the currently logged-...
CVE-2018-15315
- EPSS 0.26%
- Published 19.10.2018 13:29:00
- Last modified 21.11.2024 03:50:32
On F5 BIG-IP 13.0.0-13.1.1.1 and 12.1.0-12.1.3.6, there is a reflected Cross Site Scripting (XSS) vulnerability in an undisclosed Configuration Utility page.