CVE-2016-5700

CRITICAL EXPLOITED

F5 BIG-IP 11.5.0-11.5.4, 11.6.0-11.6.1, 12.0.0-12.1.0 - Improper Access Control via HTTP Explicit Proxy or SOCKS Profile

Title source: llm
STIX 2.1

Exploitation Summary

CVE-2016-5700 has been observed exploited in the wild (reported by VulnCheck KEV).

Description

Virtual servers in F5 BIG-IP systems 11.5.0, 11.5.1 before HF11, 11.5.2, 11.5.3, 11.5.4 before HF2, 11.6.0 before HF8, 11.6.1 before HF1, 12.0.0 before HF4, and 12.1.0 before HF2, when configured with the HTTP Explicit Proxy functionality or SOCKS profile, allow remote attackers to modify the system configuration, read system files, and possibly execute arbitrary code via unspecified vectors.

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/93325
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1036928

Scores

CVSS v3 9.8
EPSS 0.0561
EPSS Percentile 90.4%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

VulnCheck KEV 2023-11-18
CWE
CWE-284
Status published
Products (50)
f5/big-ip_access_policy_manager 11.5.0
f5/big-ip_access_policy_manager 11.5.1
f5/big-ip_access_policy_manager 11.5.2
f5/big-ip_access_policy_manager 11.5.3
f5/big-ip_access_policy_manager 11.5.4
f5/big-ip_access_policy_manager 11.6.0
f5/big-ip_access_policy_manager 11.6.1
f5/big-ip_access_policy_manager 12.0.0
f5/big-ip_access_policy_manager 12.1.0
f5/big-ip_advanced_firewall_manager 11.5.0
... and 40 more
Published Oct 03, 2016
Tracked Since Feb 18, 2026