Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4x3g-wfmq-27q5

Опубликовано: 14 фев. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 8.7

Описание

When running in appliance mode, an authenticated remote command injection vulnerability exists in an undisclosed iControl REST endpoint on multi-bladed systems. A successful exploit can allow the attacker to cross a security boundary.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated

When running in appliance mode, an authenticated remote command injection vulnerability exists in an undisclosed iControl REST endpoint on multi-bladed systems. A successful exploit can allow the attacker to cross a security boundary.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated

EPSS

Процентиль: 55%
0.00323
Низкий

8.7 High

CVSS3

Дефекты

CWE-77

Связанные уязвимости

CVSS3: 8.7
nvd
почти 2 года назад

When running in appliance mode, an authenticated remote command injection vulnerability exists in an undisclosed iControl REST endpoint on multi-bladed systems. A successful exploit can allow the attacker to cross a security boundary.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated

CVSS3: 9.6
fstec
почти 2 года назад

Уязвимость средства контроля доступа и удаленной аутентификации BIG-IP Access Policy Manager, а также программных средств, BIG-IP Advanced Firewall Managerl, BIG-IP Analytics, BIG-IP Application Acceleration Manager, BIG-IP Application Security Manager, BIG-IP Domain Name System, BIG-IP Link Controller, BIG-IP Local Traffic Manager, BIG-IP Policy Inforcement Manager, BIG-IQ Centralized Managment, связанная с непринятием мер по чистке данных на управляющем уровне, позволяющая нарушителю обойти существующие ограничения безопасности

EPSS

Процентиль: 55%
0.00323
Низкий

8.7 High

CVSS3

Дефекты

CWE-77