Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
BIG-IP Configuration Utility vulnerability
Vulnerability Description
A directory traversal vulnerability exists in the BIG-IP Configuration Utility that may allow an authenticated attacker to execute commands on the BIG-IP system. For BIG-IP system running in Appliance mode, a successful exploit can allow the attacker to cross a security boundary. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Vulnerability Type
对路径名的限制不恰当(路径遍历)
Vulnerability Title
F5 BIG-IP 路径遍历漏洞
Vulnerability Description
F5 BIG-IP是美国F5公司的一款集成了网络流量管理、应用程序安全管理、负载均衡等功能的应用交付平台。 F5 BIG-IP 存在路径遍历漏洞,该漏洞源于 BIG-IP 配置实用程序中存在目录遍历漏洞,可能允许经过身份验证的攻击者在 BIG-IP 系统上执行命令。对于在设备模式下运行的 BIG-IP 系统,成功的利用可以允许攻击者跨越安全边界。
CVSS Information
N/A
Vulnerability Type
N/A