F5

Big-ip Application Security Manager

492 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.2%
  • Veröffentlicht 11.05.2017 16:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The Traffic Management Microkernel (TMM) in F5 BIG-IP LTM, AAM, AFM, APM, ASM, GTM, Link Controller, PEM, PSM, and WebSafe 11.6.0 before 11.6.0 HF6, 11.5.0 before 11.5.3 HF2, and 11.3.0 before 11.4.1 HF10 may suffer from a memory leak while handling ...

  • EPSS 0.61%
  • Veröffentlicht 10.05.2017 14:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In F5 BIG-IP 11.2.1, 11.4.0 through 11.6.1, and 12.0.0 through 12.1.2, an unauthenticated user with access to the control plane may be able to delete arbitrary files through an undisclosed mechanism.

  • EPSS 0.45%
  • Veröffentlicht 09.05.2017 15:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In F5 BIG-IP 12.0.0 through 12.1.2, an authenticated attacker may be able to cause an escalation of privileges through a crafted iControl REST connection.

  • EPSS 0.78%
  • Veröffentlicht 09.05.2017 15:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In F5 BIG-IP 12.1.0 through 12.1.2, specific websocket traffic patterns may cause a disruption of service for virtual servers configured to use the websocket profile.

  • EPSS 0.23%
  • Veröffentlicht 09.05.2017 15:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In F5 BIG-IP 12.1.0 through 12.1.2, permissions enforced by iControl can lag behind the actual permissions assigned to a user if the role_map is not reloaded between the time the permissions are changed and the time of the user's next request. This i...

  • EPSS 0.7%
  • Veröffentlicht 09.05.2017 15:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, Edge Gateway, GTM, Link Controller, PEM, PSM, WebAccelerator, and WebSafe 11.6.1 HF1, 12.0.0 HF3, 12.0.0 HF4, and 12.1.0 through 12.1.2, undisclosed traffic patterns received while software SYN co...

  • EPSS 0.93%
  • Veröffentlicht 01.05.2017 15:59:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

An attacker may be able to cause a denial-of-service (DoS) attack against the sshd component in F5 BIG-IP, Enterprise Manager, BIG-IQ, and iWorkflow.

  • EPSS 1.2%
  • Veröffentlicht 27.03.2017 18:59:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The Traffic Management Microkernel (TMM) in F5 BIG-IP before 11.5.4 HF3, 11.6.x before 11.6.1 HF2 and 12.x before 12.1.2 does not properly handle minimum path MTU options for IPv6, which allows remote attackers to cause a denial-of-service (DoS) thro...

  • EPSS 0.11%
  • Veröffentlicht 27.03.2017 15:59:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In some cases the MCPD binary cache in F5 BIG-IP devices may allow a user with Advanced Shell access, or privileges to generate a qkview, to temporarily obtain normally unrecoverable information.

  • EPSS 0.92%
  • Veröffentlicht 23.03.2017 14:59:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

An unauthenticated remote attacker may be able to disrupt services on F5 BIG-IP 11.4.1 - 11.5.4 devices with maliciously crafted network traffic. This vulnerability affects virtual servers associated with TCP profiles when the BIG-IP system's tm.tcpp...