CVE-2022-41617
- EPSS 3.45%
- Published 19.10.2022 22:15:12
- Last modified 21.11.2024 07:23:30
In versions 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5.1, and 13.1.x before 13.1.5.1, When the Advanced WAF / ASM module is provisioned, an authenticated remote code execution vulnerability exists in the BIG-IP iControl REST...
CVE-2022-41624
- EPSS 0.35%
- Published 19.10.2022 22:15:12
- Last modified 21.11.2024 07:23:31
In BIG-IP versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.2, 15.1.x before 15.1.7, 14.1.x before 14.1.5.2, and 13.1.x before 13.1.5.1, when a sideband iRule is configured on a virtual server, undisclosed traffic can cause an increase in memory ...
CVE-2022-41691
- EPSS 0.37%
- Published 19.10.2022 22:15:12
- Last modified 21.11.2024 07:23:39
When a BIG-IP Advanced WAF/ASM security policy is configured on a virtual server, undisclosed requests can cause the bd process to terminate.
CVE-2022-41694
- EPSS 0.22%
- Published 19.10.2022 22:15:12
- Last modified 21.11.2024 07:23:39
In BIG-IP versions 16.1.x before 16.1.3, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5, and all versions of 13.1.x, and BIG-IQ versions 8.x before 8.2.0.1 and all versions of 7.x, when an SSL key is imported on a BIG-IP or BIG-IQ system, undisclosed i...
CVE-2022-41770
- EPSS 0.53%
- Published 19.10.2022 22:15:12
- Last modified 21.11.2024 07:23:48
In BIG-IP versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.7, 14.1.x before 14.1.5.1, and all versions of 13.1.x, and BIG-IQ all versions of 8.x and 7.x, an authenticated iControl REST user can cause an increase in memory r...
CVE-2022-36795
- EPSS 0.15%
- Published 19.10.2022 22:15:11
- Last modified 21.11.2024 07:13:45
In BIG-IP versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.7, and 14.1.x before 14.1.5.1, when an LTM TCP profile with Auto Receive Window Enabled is configured on a virtual server, undisclosed traffic can cause the virtual...
CVE-2022-34651
- EPSS 0.75%
- Published 04.08.2022 18:15:10
- Last modified 21.11.2024 07:09:54
In BIG-IP Versions 16.1.x before 16.1.3.1 and 15.1.x before 15.1.6.1, when an LTM Client or Server SSL profile with TLS 1.3 enabled is configured on a virtual server, along with an iRule that calls HTTP::respond, undisclosed requests can cause the Tr...
CVE-2022-34655
- EPSS 0.65%
- Published 04.08.2022 18:15:10
- Last modified 21.11.2024 07:09:54
In BIG-IP Versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.6.1, and 14.1.x before 14.1.5, when an iRule containing the HTTP::payload command is configured on a virtual server, undisclosed traffic can cause Traffic Management Microkernel (TMM) to t...
CVE-2022-34844
- EPSS 0.46%
- Published 04.08.2022 18:15:10
- Last modified 21.11.2024 07:10:18
In BIG-IP Versions 16.1.x before 16.1.3.1 and 15.1.x before 15.1.6.1, and all versions of BIG-IQ 8.x, when the Data Plane Development Kit (DPDK)/Elastic Network Adapter (ENA) driver is used with BIG-IP or BIG-IQ on Amazon Web Services (AWS) systems, ...
CVE-2022-34851
- EPSS 0.42%
- Published 04.08.2022 18:15:10
- Last modified 21.11.2024 07:10:18
In BIG-IP Versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5.1, and all versions of 13.1.x, and BIG-IQ Centralized Management all versions of 8.x, an authenticated attacker may cause iControl SOAP to...