Back

MEDIUM

BIG-IP Configuration utility XSS vulnerability

Published May 8, 2024

Description

A reflected cross-site scripting (XSS) vulnerability exist in undisclosed page of the BIG-IP Configuration utility that allows an attacker to run JavaScript in the context of the currently logged-in user.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated

Affected products

Remediation

No remediation recorded yet.

Metrics

References (1)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner f5
Published May 8, 2024
Updated Aug 2, 2024
Reserved Apr 24, 2024
CISA Vulnrichment
Updated Jun 12, 2024
NVD
Status Analyzed
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a