CVE-2019-6613
- EPSS 0.11%
- Published 03.05.2019 18:29:01
- Last modified 21.11.2024 04:46:48
On BIG-IP 13.0.0-13.1.1.4, 12.1.0-12.1.4, 11.6.1-11.6.3.4, and 11.5.2-11.5.8, SNMP may expose sensitive configuration objects over insecure transmission channels. This issue is exposed when a passphrase is used with various profile types and is acces...
CVE-2019-6609
- EPSS 0.47%
- Published 15.04.2019 15:29:00
- Last modified 21.11.2024 04:46:47
Platform dependent weakness. This issue only impacts iSeries platforms. On these platforms, in BIG-IP (LTM, AAM, AFM, Analytics, APM, ASM, DNS, Edge Gateway, FPS, GTM, Link Controller, PEM, WebAccelerator) versions 14.0.0-14.1.0.1, 13.0.0-13.1.1.3, a...
CVE-2019-6602
- EPSS 0.51%
- Published 28.03.2019 21:29:00
- Last modified 21.11.2024 04:46:47
In BIG-IP 11.5.1-11.5.8 and 11.6.1-11.6.3, the Configuration Utility login page may not follow best security practices when handling a malicious request.
CVE-2019-6603
- EPSS 0.89%
- Published 28.03.2019 21:29:00
- Last modified 21.11.2024 04:46:47
In BIG-IP 11.5.1-11.5.8, 11.6.1-11.6.3, 12.1.0-12.1.3, and 13.0.0-13.0.1, malformed TCP packets sent to a self IP address or a FastL4 virtual server may cause an interruption of service. The control plane is not exposed to this issue. This issue impa...
CVE-2019-6604
- EPSS 0.65%
- Published 28.03.2019 21:29:00
- Last modified 21.11.2024 04:46:47
On BIG-IP 11.5.1-11.5.8, 11.6.1-11.6.3, 12.1.0-12.1.3.6, 13.0.0-13.1.1.1, and 14.0.0-14.0.0.2, under certain conditions, hardware systems with a High-Speed Bridge and using non-default Layer 2 forwarding configurations may experience a lockup of the ...
CVE-2019-6605
- EPSS 0.89%
- Published 28.03.2019 21:29:00
- Last modified 21.11.2024 04:46:47
On BIG-IP 11.5.1-11.5.8, 11.6.1-11.6.3, and 12.0.x, an undisclosed sequence of packets received by an SSL virtual server and processed by an associated Client SSL or Server SSL profile may cause a denial of service.
CVE-2019-6606
- EPSS 0.27%
- Published 28.03.2019 21:29:00
- Last modified 21.11.2024 04:46:47
On BIG-IP 11.5.1-11.6.3.4, 12.1.0-12.1.3.7, 13.0.0-13.1.1.3, and 14.0.0-14.0.0.2, when processing certain SNMP requests with a request-id of 0, the snmpd process may leak a small amount of memory.
CVE-2019-6607
- EPSS 0.17%
- Published 28.03.2019 21:29:00
- Last modified 21.11.2024 04:46:47
On BIG-IP ASM 11.5.1-11.5.8, 11.6.1-11.6.3, 12.1.0-12.1.3, 13.0.0-13.1.1.3, and 14.0.0-14.0.0.2, there is a stored cross-site scripting vulnerability in an ASM violation viewed in the Configuration utility. In the worst case, an attacker can store a ...
CVE-2019-6608
- EPSS 0.61%
- Published 28.03.2019 21:29:00
- Last modified 21.11.2024 04:46:47
On BIG-IP 11.5.1-11.6.3, 12.1.0-12.1.3, 13.0.0-13.1.1.1, and 14.0.0-14.0.0.2, under certain conditions, the snmpd daemon may leak memory on a multi-blade BIG-IP vCMP guest when processing authorized SNMP requests.
CVE-2019-6597
- EPSS 0.47%
- Published 13.03.2019 22:29:00
- Last modified 21.11.2024 04:46:46
In BIG-IP 13.0.0-13.1.1.1, 12.1.0-12.1.3.7, 11.6.1-11.6.3.2, or 11.5.1-11.5.8 or Enterprise Manager 3.1.1, when authenticated administrative users run commands in the Traffic Management User Interface (TMUI), also referred to as the BIG-IP Configurat...