f5
1,024 tracked vulnerabilities.
CVE-2020-5943
MEDIUM
F5 BIG-IP 14.1.0-14.1.0.1 and 14.1.2.5-14.1.2.7 - Insecure Cryptographic Storage via REST Interface
Nov 05, 2020
CVSS 6.5
EPSS 0.00
CVE-2020-5942
HIGH
BIG-IP Policy Enforcement Manager DoS via Malformed CEA Packet
Nov 05, 2020
CVSS 7.5
EPSS 0.01
CVE-2020-5941
HIGH
BIG-IP <16.0.0.1, 15.1.0.5 - Info Disclosure
Nov 05, 2020
CVSS 7.5
EPSS 0.01
CVE-2020-5940
MEDIUM
F5 BIG-IP 14.1.0-14.1.2.3, 15.1.0-15.1.0.5, 16.0.0-16.0.0.1 - Stored Cross-Site Scripting in TMUI
Nov 05, 2020
CVSS 5.4
EPSS 0.00
CVE-2020-5939
HIGH
F5 BIG-IP Virtual Edition DoS via SR-IOV NIC Configuration
Nov 05, 2020
CVSS 7.5
EPSS 0.01
CVE-2020-5936
HIGH
BIG-IP LTM 12.1.0-15.1.0.5 Uncontrolled Resource Consumption via SSL Traffic
Oct 29, 2020
CVSS 7.5
EPSS 0.00
CVE-2020-5935
MEDIUM
F5 BIG-IP 13.1.0-13.1.3.3, 14.1.0-14.1.2.3, 15.1.0-15.1.0.5 - Denial of Service via MQTT Traffic Handling
Oct 29, 2020
CVSS 5.9
EPSS 0.01
CVE-2020-5934
MEDIUM
BIG-IP APM <15.1.0.5-13.1.3.3 - DoS
Oct 29, 2020
CVSS 6.5
EPSS 0.00
CVE-2020-5933
HIGH
F5 BIG-IP 11.6.1-15.1.0.5 DoS via HTTP Compression Profile
Oct 29, 2020
CVSS 7.5
EPSS 0.01
CVE-2020-5932
MEDIUM
BIG-IP ASM 15.1.0-15.1.0.5 - Authenticated Stored Cross-Site Scripting in Configuration Utility Response Pages
Oct 29, 2020
CVSS 4.8
EPSS 0.00
CVE-2020-5931
HIGH
F5 BIG-IP DoS via WebSocket HTTP Response Headers
Oct 29, 2020
CVSS 7.5
EPSS 0.01
CVE-2020-5938
MEDIUM
BIG-IP <13.1.3.4, <12.1.5.2, <11.6.5.2 - Info Disclosure
Oct 29, 2020
CVSS 6.5
EPSS 0.00
CVE-2020-5937
HIGH
BIG-IP AFM 15.1.0-15.1.0.5 - Denial of Service via L4 Behavioral Traffic
Oct 29, 2020
CVSS 7.5
EPSS 0.01
CVE-2020-5930
HIGH
BIG-IP 11.6.1-15.1.0.4 - Unauthenticated DoS
Sep 25, 2020
CVSS 7.5
EPSS 0.01
CVE-2020-5929
MEDIUM
BIG-IP <13.0.0 HF2, <12.1.2 HF1, <11.6.2 - SSL/TLS Handshake
Sep 25, 2020
CVSS 5.9
EPSS 0.01
CVE-2020-5928
LOW
F5 BIG-IP Application Security Manager 11.5.2-11.6.5 - Cross-Site Request Forgery via Reused CSRF Token
Aug 26, 2020
CVSS 3.1
EPSS 0.00
CVE-2020-5927
MEDIUM
BIG-IP ASM 14.1.0-14.1.2.6, 15.0.0-15.0.1.3, 15.1.0-15.1.0.4 - Stored Cross-Site Scripting in Configuration Utility
Aug 26, 2020
CVSS 6.1
EPSS 0.00
CVE-2020-5926
HIGH
BIG-IP <15.1.0.4 - Memory Corruption
Aug 26, 2020
CVSS 7.5
EPSS 0.01
CVE-2020-5925
HIGH
BIG-IP 11.6.1-15.1.0.4 DoS via TMM UDP Traffic Handling
Aug 26, 2020
CVSS 7.5
EPSS 0.01
CVE-2020-5921
HIGH
BIG-IP <15.1.0.4, 15.0.0-15.0.1.3, 14.1.0-14.1.2.6, 13.1.0-13.1.3.4...
Aug 26, 2020
CVSS 7.5
EPSS 0.01
CVE-2020-5924
MEDIUM
BIG-IP APM <12.1.5.1-11.6.5.2 - Memory Corruption
Aug 26, 2020
CVSS 5.3
EPSS 0.01
CVE-2020-5923
MEDIUM
BIG-IP <15.2 - Port-Lockdown Bypass
Aug 26, 2020
CVSS 5.4
EPSS 0.00
CVE-2020-5922
HIGH
BIG-IP 11.6.1-15.1.0.4 - Cross-Site Request Forgery in iControl REST
Aug 26, 2020
CVSS 8.8
EPSS 0.00
CVE-2020-5920
MEDIUM
BIG-IP <15.2 - Blind SQL Injection
Aug 26, 2020
CVSS 4.3
EPSS 0.00
CVE-2020-5919
HIGH
BIG-IP Access Policy Manager 15.1.0-15.1.0.4 - Denial of Service via Modern Customization Session Variable Rendering
Aug 26, 2020
CVSS 7.5
EPSS 0.01
Products
big-ip_access_policy_manager 589
big-ip_application_security_manager 541
big-ip_advanced_firewall_manager 514
big-ip_local_traffic_manager 503
big-ip_policy_enforcement_manager 495
big-ip_link_controller 487
big-ip_application_acceleration_manager 486
big-ip_analytics 473
big-ip_global_traffic_manager 452
big-ip_domain_name_system 429
big-ip_fraud_protection_service 367
big-ip_webaccelerator 259
big-ip_edge_gateway 255
big-ip_advanced_web_application_firewall 155
big-ip_websafe 137
big-ip_ddos_hybrid_defender 127
big-ip_ssl_orchestrator 108
big-iq_centralized_management 77
big-ip_carrier-grade_nat 71
big-ip_application_visibility_and_reporting 70
big-ip_protocol_security_module 61
big-ip_container_ingress_services 48
big-ip_automation_toolchain 47
BIG-IP 46
nginx 41
enterprise_manager 39
njs 39
big-ip_wan_optimization_manager 38
traffix_signaling_delivery_controller 31
ssl_orchestrator 27
Quick Filters