Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-47pf-mc42-q29m

Опубликовано: 05 фев. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 8.5
CVSS3: 8.7

Описание

When running in Appliance mode, an authenticated remote command injection vulnerability exists in an undisclosed iControl REST endpoint. A successful exploit can allow the attacker to cross a security boundary.

Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

When running in Appliance mode, an authenticated remote command injection vulnerability exists in an undisclosed iControl REST endpoint. A successful exploit can allow the attacker to cross a security boundary.

Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

EPSS

Процентиль: 63%
0.00438
Низкий

8.5 High

CVSS4

8.7 High

CVSS3

Дефекты

CWE-77

Связанные уязвимости

CVSS3: 8.7
nvd
около 1 года назад

When running in Appliance mode, and logged into a highly-privileged role, an authenticated remote command injection vulnerability exists in an undisclosed iControl REST endpoint. A successful exploit can allow the attacker to cross a security boundary. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVSS3: 8.7
fstec
около 1 года назад

Уязвимость компонента iControl REST средства контроля доступа и удаленной аутентификации BIG-IP, позволяющая нарушителю внедрить произвольные команды

EPSS

Процентиль: 63%
0.00438
Низкий

8.5 High

CVSS4

8.7 High

CVSS3

Дефекты

CWE-77