Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
XML External Entity (XXE) vulnerability in sam/admin/vpe2/public/php/server.php in F5 BIG-IP 10.0.0 through 10.2.4 and 11.0.0 through 11.2.1 allows remote authenticated users to read arbitrary files via a crafted XML file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
F5 BIG-IP XML实体引用信息泄露漏洞
Vulnerability Description
F5 BIG-IP是美国F5公司的一款集成了网络流量管理、应用程序安全管理、负载均衡等功能的多合一网络设备。 F5 BIG-IP 10.0.0至10.2.4版本和11.0.0至11.2.1版本中的sam/admin/vpe2/public/php/server.php脚本存在XML External Entity (XXE)漏洞。远程攻击者可借助特制的XML文件利用该漏洞读取任意文件。
CVSS Information
N/A
Vulnerability Type
N/A