İçeriğe atla
Noroxi

F5 kayıtları

f5 üreticisine ait 1.039 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
14 · %1,3
Silahlaştırılmış
22 · %2,1
Pre-auth RCE
32
Düzeltme kaydı olan
%19,9
Yayından KEV’e ortanca
190 gün

Tüm kayıtlar

1.039 kayıt
  • In BIG-IP versions 15.0.0-15.1.0.3, 14.1.0-14.1.2.5, 13.1.0-13.1.3.3, 12.1.0-12.1.5.1, and 11.6.1-11.6.5.1, the Traffic Management User Inte

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %100

    f5 · big-ip access policy manager1 Tem 2020

  • GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which allows remote attac

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %100

    gnu · bash24 Eyl 2014

  • On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13.1.x versions prior

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %100

    f5 · big-ip access policy manager5 May 2022

  • GNU Bash through 4.3 bash43-025 processes trailing strings after certain malformed function definitions in the values of environment variabl

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %100

    gnu · bash24 Eyl 2014

  • On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, and 12.1.x before 12.1.5.3

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %100

    f5 · big-ip access policy manager31 Mar 2021

  • BIG-IP Configuration utility unauthenticated remote code execution vulnerability

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %97

    f5 · big-ip access policy manager26 Eki 2023

  • A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user.

    KritikCVSS 9,0KEVSilahlaştırılmışEPSS %100

    resf · rocky linux16 Eyl 2021

  • The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as

    YüksekCVSS 7,5KEVSilahlaştırılmışEPSS %100

    siemens · simatic s7-1500 cpu 1518f-4 pn\/dp mfp firmware10 Eki 2023

  • On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, and 12.1.x before 12.1.5.3,

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %61

    f5 · big-ip access policy manager31 Mar 2021

  • CVE-2025-53521
    68Bu hafta

    BigIP APM Vulnerability

    KritikCVSS 9,3KEVSilahlaştırılmışEPSS %2

    f5 · big-ip access policy manager15 Eki 2025

  • CVE-2026-94127
    68Bu hafta

    BIG-IP APM OAuth vulnerability

    KritikCVSS 9,3KEVSilahlaştırılmışEPSS %2

    f5 · big-ip access policy manager22 Eyl 2026

  • CVE-2023-46748
    66Bu hafta

    BIG-IP Configuration utility authenticated SQL injection vulnerability

    YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %4

    f5 · big-ip access policy manager26 Eki 2023

  • CVE-2009-3555
    65Bu hafta

    The TLS protocol, and the SSL protocol 3.0 and possibly earlier, as used in Microsoft Internet Information Services (IIS) 7.0, mod_ssl in th

    KritikCVSS 9,8Kavram kanıtıEPSS %87

    apache · http server9 Kas 2009

  • CVE-2018-14634
    65Bu hafta

    An integer overflow flaw was found in the Linux kernel's create_elf_tables() function.

    YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %15

    linux · linux kernel25 Eyl 2018

  • CVE-2022-41622
    63Bu hafta

    iControl SOAP vulnerability

    YüksekCVSS 8,8SilahlaştırılmışEPSS %92

    f5 · big-iq centralized management7 Ara 2022

  • CVE-2021-22992
    61Bu hafta

    On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, 12.1.x before 12.1.5.3, and

    KritikCVSS 9,8İstismar yokEPSS %73

    f5 · big-ip access policy manager31 Mar 2021

  • CVE-2019-11477
    60Bu hafta

    Integer overflow in TCP_SKB_CB(skb)->tcp_gso_segs

    YüksekCVSS 7,5Kavram kanıtıEPSS %99

    linux · linux kernel18 Haz 2019

  • CVE-2015-7547
    59Planlayın

    Multiple stack-based buffer overflows in the (1) send_dg and (2) send_vc functions in the libresolv library in the GNU C Library (aka glibc

    YüksekCVSS 8,1Kavram kanıtıEPSS %91

    gnu · glibc18 Şub 2016

  • CVE-2014-0196
    59Planlayın

    The n_tty_write function in drivers/tty/n_tty.c in the Linux kernel through 3.14.3 does not properly manage tty driver access in the "LECHO

    OrtaCVSS 5,5KEVSilahlaştırılmışEPSS %22

    linux · linux kernel7 May 2014

  • CVE-2019-11478
    58Planlayın

    SACK can cause extensive memory use via fragmented resend queue

    YüksekCVSS 7,5İstismar yokEPSS %95

    linux · linux kernel18 Haz 2019

  • CVE-2019-11479
    57Planlayın

    Jonathan Looney discovered that the Linux kernel default MSS is hard-coded to 48 bytes.

    YüksekCVSS 7,5İstismar yokEPSS %92

    linux · linux kernel18 Haz 2019

  • CVE-2022-41800
    57Planlayın

    Appliance mode iControl REST vulnerability

    YüksekCVSS 8,7SilahlaştırılmışEPSS %77

    f5 · big-ip access policy manager7 Ara 2022

  • CVE-2015-3628
    57Planlayın

    The iControl API in F5 BIG-IP LTM, AFM, Analytics, APM, ASM, Link Controller, and PEM 11.3.0 before 11.5.3 HF2 and 11.6.0 before 11.6.0 HF6,

    KritikCVSS 9,0SilahlaştırılmışEPSS %69

    f5 · big-iq security7 Ara 2015

  • CVE-2013-2028
    56Planlayın

    The ngx_http_parse_chunked function in http/ngx_http_parse.c in nginx 1.3.9 through 1.4.0 allows remote attackers to cause a denial of servi

    YüksekCVSS 7,5SilahlaştırılmışEPSS %87

    f5 · nginx19 Tem 2013

  • CVE-2019-9515
    56Planlayın

    Some HTTP/2 implementations are vulnerable to a settings flood, potentially leading to a denial of service

    YüksekCVSS 7,5İstismar yokEPSS %87

    apple · swiftnio13 Ağu 2019