F5 / Big-IQ Device
20 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2014-5209 | ntp: Information Disclosure vulnerability via GET_RESTRICT control message | MEDIUM | 5.3 | Jan 8, 2020 |
| CVE-2017-6128 | An attacker may be able to cause a denial-of-service (DoS) attack against the sshd component in F5 BIG-IP, Enterprise Manager, BIG-IQ, and iWorkflow. | HIGH | 7.5 | May 1, 2017 |
| CVE-2016-5022 | F5 BIG-IP LTM, Analytics, APM, ASM, and Link Controller 11.2.x before 11.2.1 HF16, 11.3.x, 11.4.x, 11.5.x before 11.5.4 HF2, 11.6.x before 11.6.1 HF1, and 12.x… | CRITICAL | 9.8 | Sep 7, 2016 |
| CVE-2016-5021 | The iControl REST service in F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, Link Controller, and PEM 11.5.x before 11.5.4, 11.6.x before 11.6.1, and 12.x before… | MEDIUM | 4.9 | Jun 24, 2016 |
| CVE-2015-8099 | F5 BIG-IP LTM, AFM, Analytics, APM, ASM, Link Controller, and PEM 11.3.x, 11.4.x before 11.4.1 HF10, 11.5.x before 11.5.4, 11.6.x before 11.6.1, and 12.x befor… | MEDIUM | 5.9 | May 13, 2016 |
| CVE-2016-2084 | F5 BIG-IP LTM, AFM, Analytics, APM, ASM, Link Controller, and PEM 11.3.x, 11.4.x before 11.4.1 build 685-HF10, 11.5.1 before build 10.104.180, 11.5.2 before 11… | HIGH | 7.4 | Apr 13, 2016 |
| CVE-2015-5516 | Memory leak in the last hop kernel module in F5 BIG-IP LTM, GTM, and Link Controller 10.1.x, 10.2.x before 10.2.4 HF13, 11.x before 11.2.1 HF15, 11.3.x, 11.4.x… | HIGH | 7.5 | Jan 20, 2016 |
| CVE-2015-7393 | dcoep in BIG-IP LTM, Analytics, APM, ASM, and Link Controller 11.2.0 through 11.6.0 and 12.0.0 before 12.0.0 HF1, BIG-IP AAM 11.4.0 through 11.6.0 and 12.0.0 b… | HIGH | 7.4 | Jan 12, 2016 |
| CVE-2015-3628 | The iControl API in F5 BIG-IP LTM, AFM, Analytics, APM, ASM, Link Controller, and PEM 11.3.0 before 11.5.3 HF2 and 11.6.0 before 11.6.0 HF6, BIG-IP AAM 11.4.0… | HIGH | 9.0 | Dec 7, 2015 |
| CVE-2015-7394 | The datastor kernel module in F5 BIG-IP Analytics, APM, ASM, Link Controller, and LTM 11.1.0 before 12.0.0, BIG-IP AAM 11.4.0 before 12.0.0, BIG-IP AFM, PEM 11… | HIGH | 9.0 | Nov 6, 2015 |
| CVE-2015-5058 | Memory leak in the virtual server component in F5 Big-IP LTM, AAM, AFM, Analytics, APM, ASM, GTM, Link Controller, and PEM 11.5.x before 11.5.1 HF10, 11.5.3 be… | HIGH | 7.8 | Aug 24, 2015 |
| CVE-2015-4637 | The REST API in F5 BIG-IQ Cloud, Device, and Security 4.4.0 and 4.5.0 before HF2 and ADC 4.5.0 before HF2, when configured for LDAP remote authentication and t… | MEDIUM | 4.3 | Jul 16, 2015 |
| CVE-2015-4047 | ipsec-tools: NULL pointer dereference in racoon/gssapi.c | HIGH | 7.8 | May 29, 2015 |
| CVE-2014-8730 | TLS: incorrect check of padding bytes when using CBC cipher suites | MEDIUM | 4.3 | Dec 10, 2014 |
| CVE-2014-2927 | The rsync daemon in F5 BIG-IP 11.6 before 11.6.0, 11.5.1 before HF3, 11.5.0 before HF4, 11.4.1 before HF4, 11.4.0 before HF7, 11.3.0 before HF9, and 11.2.1 bef… | HIGH | 9.3 | Oct 15, 2014 |
| CVE-2014-7169 KEV | bash: code execution via specially-crafted environment (Incomplete fix for CVE-2014-6271) | CRITICAL | 9.8 | Sep 25, 2014 |
| CVE-2014-6271 KEV | bash: specially-crafted environment variables can be used to inject shell commands | CRITICAL | 9.8 | Sep 24, 2014 |
| CVE-2014-4027 | Kernel: target/rd: imformation leakage | LOW | 2.3 | Jun 23, 2014 |
| CVE-2014-0196 KEV | kernel: pty layer race condition leading to memory corruption | MEDIUM | 5.5 | May 7, 2014 |
| CVE-2014-0101 | kernel: net: sctp: null pointer dereference when processing authenticated cookie_echo chunk | HIGH | 7.8 | Mar 11, 2014 |
Showing 1 to 20 of 20 CVEs