F5 / Firepass
10 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2013-3587 | BREACH attack against HTTP compression | MEDIUM | 5.9 | Feb 21, 2020 |
| CVE-2014-2927 | The rsync daemon in F5 BIG-IP 11.6 before 11.6.0, 11.5.1 before HF3, 11.5.0 before HF4, 11.4.1 before HF4, 11.4.0 before HF7, 11.3.0 before HF9, and 11.2.1 bef… | HIGH | 9.3 | Oct 15, 2014 |
| CVE-2013-6024 | The Edge Client components in F5 BIG-IP APM 10.x, 11.x, 12.x, 13.x, and 14.x, BIG-IP Edge Gateway 10.x and 11.x, and FirePass 7.0.0 allow attackers to obtain s… | MEDIUM | 4.4 | Feb 10, 2014 |
| CVE-2013-0150 | Directory traversal vulnerability in an unspecified signed Java applet in the client-side components in F5 BIG-IP APM 10.1.0 through 10.2.4 and 11.0.0 through… | HIGH | 9.3 | Aug 9, 2013 |
| CVE-2011-3188 | kernel: net: improve sequence number generation | CRITICAL | 9.1 | May 24, 2012 |
| CVE-2012-2053 | The sudoers file in the Linux system configuration in F5 FirePass 6.0.0 through 6.1.0 and 7.0.0 does not require a password for executing commands as root, whi… | HIGH | 7.2 | Apr 4, 2012 |
| CVE-2012-1777 | SQL injection vulnerability in my.activation.php3 in F5 FirePass 6.0.0 through 6.1.0 and 7.0.0 allows remote attackers to execute arbitrary SQL commands via th… | HIGH | 7.5 | Apr 4, 2012 |
| CVE-2007-0195 | my.activation.php3 in F5 FirePass 5.4 through 5.5.1 and 6.0 displays different error messages for failed login attempts with a valid username than for those wi… | MEDIUM | 5.0 | Jan 11, 2007 |
| CVE-2007-0188 | F5 FirePass 5.4 through 5.5.1 does not properly enforce host access restrictions when a client uses a single integer (dword) representation of an IP address ("… | MEDIUM | 6.5 | Jan 11, 2007 |
| CVE-2007-0187 | F5 FirePass 5.4 through 5.5.2 and 6.0 allows remote attackers to access restricted URLs via (1) a trailing null byte, (2) multiple leading slashes, (3) Unicode… | HIGH | 7.5 | Jan 11, 2007 |
Showing 1 to 10 of 10 CVEs