f5
1,024 tracked vulnerabilities.
CVE-2017-6140
HIGH
F5 BIG-IP LTM AAM AFM Analytics ASM DNS GTM PEM 11.5.0-12.1.2 - Denial of Service via SSL Profile Packet Sequence
Dec 21, 2017
CVSS 7.5
EPSS 0.01
CVE-2017-6139
MEDIUM
F5 BIG-IP APM 12.1.2, 13.0.0 - Sensitive Information Disclosure in Log Files
Dec 21, 2017
CVSS 5.9
EPSS 0.00
CVE-2017-6138
HIGH
F5 BIG-IP 12.1.0-12.1.2, 13.0.0 DoS via Malicious HTTP Requests
Dec 21, 2017
CVSS 7.5
EPSS 0.01
CVE-2017-6136
MEDIUM
F5 BIG-IP 12.0.0-12.1.2, 13.0.0 DoS via TCP Fast Open and Tail Loss Probe
Dec 21, 2017
CVSS 5.9
EPSS 0.01
CVE-2017-6135
HIGH
F5 BIG-IP 13.0.0 DoS via Memory Leak
Dec 21, 2017
CVSS 7.5
EPSS 0.01
CVE-2017-6134
MEDIUM
F5 BIG-IP 11.5.1-11.6.1, 12.1.0-12.1.2, 13.0.0 DoS via Adjacent Network Packet Sequence
Dec 21, 2017
CVSS 6.5
EPSS 0.01
CVE-2017-6133
HIGH
F5 BIG-IP 12.1.0-12.1.2, 13.0.0 DoS via Undisclosed HTTP Requests
Dec 21, 2017
CVSS 7.5
EPSS 0.01
CVE-2017-6132
HIGH
F5 BIG-IP 11.5.0-11.5.4, 11.6.0-11.6.1, 12.0.0-12.1.2, 13.0.0 - DoS via HA State Mirror Listener
Dec 21, 2017
CVSS 7.5
EPSS 0.02
CVE-2017-6129
HIGH
F5 BIG-IP APM 12.1.2, 13.0.0 - Denial of Service via VPN/PPP Connflow Handling
Dec 21, 2017
CVSS 7.5
EPSS 0.00
CVE-2017-0304
MEDIUM
BIG-IP AFM 12.0.0, 12.1.0-12.1.2, 13.0.0 - SQL Injection in Management UI
Dec 21, 2017
CVSS 5.4
EPSS 0.00
CVE-2017-0301
HIGH
F5 BIG-IP APM <12.1.2 - Info Disclosure
Dec 21, 2017
CVSS 7.6
EPSS 0.00
CVE-2017-6166
MEDIUM
BIG-IP 12.0.0-12.1.1 Use-After-Free in TMM via Fragmented Packets
Nov 22, 2017
CVSS 5.9
EPSS 0.01
CVE-2017-6168
HIGH
F5 BIG-IP 11.6.0-11.6.2 12.0.0-12.1.2 13.0.0-13.0.0 - Adaptive Chosen Ciphertext Attack via Client SSL Profile
Nov 17, 2017
CVSS 7.4
EPSS 0.76
CVE-2017-6163
MEDIUM
F5 BIG-IP 11.4.0-11.5.4, 11.6.0-11.6.1, 12.0.0-12.1.2 DoS via HTTP/2 or SPDY Stream Limit Bypass
Oct 27, 2017
CVSS 5.9
EPSS 0.02
CVE-2017-6162
MEDIUM
F5 BIG-IP 11.2.1-12.1.2 DoS via TCP Traffic Processing
Oct 27, 2017
CVSS 5.9
EPSS 0.02
CVE-2017-6161
MEDIUM
F5 BIG-IP 11.2.1, 11.4.0-11.5.4, 11.6.0-11.6.1, 12.0.0-12.1.2 DoS via ConfigSync
Oct 27, 2017
CVSS 5.3
EPSS 0.03
CVE-2017-6160
MEDIUM
F5 BIG-IP <12.1.1, 11.6.1, 11.5.4 - DoS
Oct 27, 2017
CVSS 5.9
EPSS 0.05
CVE-2017-6159
MEDIUM
F5 BIG-IP LTM AAM AFM 11.6.0-11.6.1 12.0.0-12.1.2 - Denial of Service via MPTCP Option
Oct 27, 2017
CVSS 5.9
EPSS 0.01
CVE-2017-6157
HIGH
F5 BIG-IP 11.5.0-11.5.4, 11.6.0-11.6.1, 12.0.0-12.1.1 - Unauthenticated RCE via HTTP Explicit Proxy or SOCKS Profile
Oct 27, 2017
CVSS 8.1
EPSS 0.07
CVE-2017-0303
HIGH
F5 BIG-IP 11.5.1-13.0.0 Resource Starvation via SOCKS Profile
Oct 27, 2017
CVSS 7.5
EPSS 0.02
CVE-2017-6165
CRITICAL
F5 BIG-IP - Sensitive Information Disclosure in Log File
Oct 20, 2017
CVSS 9.8
EPSS 0.02
CVE-2017-6145
HIGH
F5 BIG-IP 12.0.0-12.1.2 and 13.0.0 - Insufficient Session Expiration via iControl REST Cookie Conversion
Oct 20, 2017
CVSS 7.3
EPSS 0.00
CVE-2017-6144
HIGH
F5 BIG-IP PEM 12.1.0-12.1.2 - Improper Certificate Validation in TAC Database Download
Oct 20, 2017
CVSS 7.4
EPSS 0.00
CVE-2017-6141
MEDIUM
F5 BIG-IP 12.1.0-12.1.2 DoS via TLS Abbreviated Handshake
Oct 20, 2017
CVSS 5.9
EPSS 0.01
CVE-2017-6147
MEDIUM
F5 BIG-IP - Denial of Service via SSL Forward Proxy Configuration
Sep 18, 2017
CVSS 5.9
EPSS 0.01
Products
big-ip_access_policy_manager 589
big-ip_application_security_manager 541
big-ip_advanced_firewall_manager 514
big-ip_local_traffic_manager 503
big-ip_policy_enforcement_manager 495
big-ip_link_controller 487
big-ip_application_acceleration_manager 486
big-ip_analytics 473
big-ip_global_traffic_manager 452
big-ip_domain_name_system 429
big-ip_fraud_protection_service 367
big-ip_webaccelerator 259
big-ip_edge_gateway 255
big-ip_advanced_web_application_firewall 155
big-ip_websafe 137
big-ip_ddos_hybrid_defender 127
big-ip_ssl_orchestrator 108
big-iq_centralized_management 77
big-ip_carrier-grade_nat 71
big-ip_application_visibility_and_reporting 70
big-ip_protocol_security_module 61
big-ip_container_ingress_services 48
big-ip_automation_toolchain 47
BIG-IP 46
nginx 41
enterprise_manager 39
njs 39
big-ip_wan_optimization_manager 38
traffix_signaling_delivery_controller 31
ssl_orchestrator 27
Quick Filters