f5

1,024 tracked vulnerabilities.

CVE-2017-6140 HIGH
F5 BIG-IP LTM AAM AFM Analytics ASM DNS GTM PEM 11.5.0-12.1.2 - Denial of Service via SSL Profile Packet Sequence
Dec 21, 2017
CVSS 7.5
EPSS 0.01
CVE-2017-6139 MEDIUM
F5 BIG-IP APM 12.1.2, 13.0.0 - Sensitive Information Disclosure in Log Files
Dec 21, 2017
CVSS 5.9
EPSS 0.00
CVE-2017-6138 HIGH
F5 BIG-IP 12.1.0-12.1.2, 13.0.0 DoS via Malicious HTTP Requests
Dec 21, 2017
CVSS 7.5
EPSS 0.01
CVE-2017-6136 MEDIUM
F5 BIG-IP 12.0.0-12.1.2, 13.0.0 DoS via TCP Fast Open and Tail Loss Probe
Dec 21, 2017
CVSS 5.9
EPSS 0.01
CVE-2017-6135 HIGH
F5 BIG-IP 13.0.0 DoS via Memory Leak
Dec 21, 2017
CVSS 7.5
EPSS 0.01
CVE-2017-6134 MEDIUM
F5 BIG-IP 11.5.1-11.6.1, 12.1.0-12.1.2, 13.0.0 DoS via Adjacent Network Packet Sequence
Dec 21, 2017
CVSS 6.5
EPSS 0.01
CVE-2017-6133 HIGH
F5 BIG-IP 12.1.0-12.1.2, 13.0.0 DoS via Undisclosed HTTP Requests
Dec 21, 2017
CVSS 7.5
EPSS 0.01
CVE-2017-6132 HIGH
F5 BIG-IP 11.5.0-11.5.4, 11.6.0-11.6.1, 12.0.0-12.1.2, 13.0.0 - DoS via HA State Mirror Listener
Dec 21, 2017
CVSS 7.5
EPSS 0.02
CVE-2017-6129 HIGH
F5 BIG-IP APM 12.1.2, 13.0.0 - Denial of Service via VPN/PPP Connflow Handling
Dec 21, 2017
CVSS 7.5
EPSS 0.00
CVE-2017-0304 MEDIUM
BIG-IP AFM 12.0.0, 12.1.0-12.1.2, 13.0.0 - SQL Injection in Management UI
Dec 21, 2017
CVSS 5.4
EPSS 0.00
CVE-2017-0301 HIGH
F5 BIG-IP APM <12.1.2 - Info Disclosure
Dec 21, 2017
CVSS 7.6
EPSS 0.00
CVE-2017-6166 MEDIUM
BIG-IP 12.0.0-12.1.1 Use-After-Free in TMM via Fragmented Packets
Nov 22, 2017
CVSS 5.9
EPSS 0.01
CVE-2017-6168 HIGH
F5 BIG-IP 11.6.0-11.6.2 12.0.0-12.1.2 13.0.0-13.0.0 - Adaptive Chosen Ciphertext Attack via Client SSL Profile
Nov 17, 2017
CVSS 7.4
EPSS 0.76
CVE-2017-6163 MEDIUM
F5 BIG-IP 11.4.0-11.5.4, 11.6.0-11.6.1, 12.0.0-12.1.2 DoS via HTTP/2 or SPDY Stream Limit Bypass
Oct 27, 2017
CVSS 5.9
EPSS 0.02
CVE-2017-6162 MEDIUM
F5 BIG-IP 11.2.1-12.1.2 DoS via TCP Traffic Processing
Oct 27, 2017
CVSS 5.9
EPSS 0.02
CVE-2017-6161 MEDIUM
F5 BIG-IP 11.2.1, 11.4.0-11.5.4, 11.6.0-11.6.1, 12.0.0-12.1.2 DoS via ConfigSync
Oct 27, 2017
CVSS 5.3
EPSS 0.03
CVE-2017-6160 MEDIUM
F5 BIG-IP <12.1.1, 11.6.1, 11.5.4 - DoS
Oct 27, 2017
CVSS 5.9
EPSS 0.05
CVE-2017-6159 MEDIUM
F5 BIG-IP LTM AAM AFM 11.6.0-11.6.1 12.0.0-12.1.2 - Denial of Service via MPTCP Option
Oct 27, 2017
CVSS 5.9
EPSS 0.01
CVE-2017-6157 HIGH
F5 BIG-IP 11.5.0-11.5.4, 11.6.0-11.6.1, 12.0.0-12.1.1 - Unauthenticated RCE via HTTP Explicit Proxy or SOCKS Profile
Oct 27, 2017
CVSS 8.1
EPSS 0.07
CVE-2017-0303 HIGH
F5 BIG-IP 11.5.1-13.0.0 Resource Starvation via SOCKS Profile
Oct 27, 2017
CVSS 7.5
EPSS 0.02
CVE-2017-6165 CRITICAL
F5 BIG-IP - Sensitive Information Disclosure in Log File
Oct 20, 2017
CVSS 9.8
EPSS 0.02
CVE-2017-6145 HIGH
F5 BIG-IP 12.0.0-12.1.2 and 13.0.0 - Insufficient Session Expiration via iControl REST Cookie Conversion
Oct 20, 2017
CVSS 7.3
EPSS 0.00
CVE-2017-6144 HIGH
F5 BIG-IP PEM 12.1.0-12.1.2 - Improper Certificate Validation in TAC Database Download
Oct 20, 2017
CVSS 7.4
EPSS 0.00
CVE-2017-6141 MEDIUM
F5 BIG-IP 12.1.0-12.1.2 DoS via TLS Abbreviated Handshake
Oct 20, 2017
CVSS 5.9
EPSS 0.01
CVE-2017-6147 MEDIUM
F5 BIG-IP - Denial of Service via SSL Forward Proxy Configuration
Sep 18, 2017
CVSS 5.9
EPSS 0.01