Known Vulnerabilities for Big-ip Analytics by F5

Listed below are 10 of the newest known vulnerabilities associated with the software "Big-ip Analytics" by "F5".

These CVEs are retrieved based on exact matches on listed software and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.

Data on known vulnerable versions is also displayed based on information from known CPEs

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2021-22988 On BIG-IP versions 16.0.x before, 15.1.x before, 14.1.x before 14.1.4, 13.1.x before, 12.1.x befor... 8.8 - HIGH 2021-03-31 2021-04-05
CVE-2021-22987 On BIG-IP versions 16.0.x before, 15.1.x before, 14.1.x before 14.1.4, 13.1.x before, 12.1.x befor... 9.9 - CRITICAL 2021-03-31 2021-04-05

Known Affected Configurations (CPE V2.3)

Type Vendor Product Version Update Edition Language
ApplicationF5Big-ip Analytics16.0.1.1AllAllAll
ApplicationF5Big-ip Analytics16.0.1AllAllAll
ApplicationF5Big-ip Analytics16.0.0AllAllAll
ApplicationF5Big-ip Analytics15.1.2AllAllAll
ApplicationF5Big-ip Analytics15.1.1AllAllAll
ApplicationF5Big-ip Analytics15.1.0.5AllAllAll
ApplicationF5Big-ip Analytics15.1.0.4AllAllAll
ApplicationF5Big-ip Analytics15.1.0.3AllAllAll
ApplicationF5Big-ip Analytics15.1.0.2AllAllAll
ApplicationF5Big-ip Analytics15.1.0.1AllAllAll
ApplicationF5Big-ip Analytics15.1.0AllAllAll
ApplicationF5Big-ip Analytics15.0.1.4AllAllAll
ApplicationF5Big-ip Analytics15.0.1.3AllAllAll
ApplicationF5Big-ip Analytics15.0.1.2AllAllAll
ApplicationF5Big-ip Analytics15.0.1.1AllAllAll
ApplicationF5Big-ip Analytics15.
ApplicationF5Big-ip Analytics15.
ApplicationF5Big-ip Analytics15.0.1AllAllAll
ApplicationF5Big-ip Analytics15.0.0AllAllAll
ApplicationF5Big-ip Analytics14.1.3.1AllAllAll

Popular searches for Big-ip Analytics

TMUI RCE vulnerability CVE-2020-5902

$TMUI RCE vulnerability CVE-2020-5902 Product: BIG-IP , BIG-IP AAM, BIG-IP AFM, BIG-IP Analytics , BIG-IP APM, BIG-IP ASM, BIG-IP DNS, BIG-IP FPS, BIG-IP GTM, BIG-IP Link Controller, BIG-IP LTM, BIG-IP PEM. Product: F5 App Protect, F5 DDoS Hybrid Defender, F5 SSL Orchestrator. The Traffic Management User Interface TMUI , also referred to as the Configuration utility, has a Remote Code Execution RCE vulnerability in undisclosed pages. This vulnerability allows for unauthenticated attackers, or authenticated users, with network access to the Configuration utility, through the BIG-IP Ps, to execute arbitrary system commands, create or delete files, disable services, and/or execute arbitrary Java code.

BIG-IP SSL vulnerability CVE-2017-6168

G-IP SSL vulnerability CVE-2017-6168 Product: BIG-IP , BIG-IP AAM, BIG-IP AFM, BIG-IP Analytics , BIG-IP APM, BIG-IP ASM, BIG-IP DNS, BIG-IP GTM, BIG-IP Link Controller, BIG-IP LTM, BIG-IP M. HF3 a virtual server configured with a Client SSL profile may be vulnerable to an Adaptive Chosen Ciphertext attack AKA Bleichenbacher attack against RSA, which when exploited, may result in plaintext recovery of encrypted messages and/or a Man-in-the-middle MiTM attack, despite the attacker not having gained access to the server's private key itself, aka a ROBOT attack. Exploiting this vulnerability to perform plaintext recovery of encrypted messages will, in most practical cases, allow an attacker to read the plaintext only after the session has completed. Only TLS sessions established using RSA key exchange are vulnerable to this attack.

