Vulnerability index

Browse CVEs

865 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Big Ip Access Policy Manager MEDIUM 6.5
CVE-2022-34851

In BIG-IP Versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5.1, and all versions of 13.1.x, and BI…

Fix: 14.1.5.1 / 15.1.6.1+
Fix from $1,600 2022-08-04
Nginx Instance Manager MEDIUM 6.5
CVE-2022-35241

In versions 2.x before 2.3.1 and all versions of 1.x, when NGINX Instance Manager is in use, undisclosed requests can cause an increase in disk resou…

Fix: 2.3.1+
Fix from $1,600 2022-08-04
Big Ip Access Policy Manager MEDIUM 5.5
CVE-2022-35272

In BIG-IP Versions 17.0.x before 17.0.0.1 and 16.1.x before 16.1.3.1, when source-port preserve-strict is configured on an HTTP Message Routing Frame…

Fix: 16.1.3.1+
Fix from $1,600 2022-08-04
Big Ip Access Policy Manager HIGH 7.7
CVE-2022-31473

In BIG-IP Versions 16.1.x before 16.1.1 and 15.1.x before 15.1.4, when running in Appliance mode, an authenticated attacker may be able to bypass App…

Fix: 15.1.4+
Fix from $1,950 2022-08-04
Big Ip Access Policy Manager HIGH 7.5
CVE-2022-32455

In BIG-IP Versions 16.1.x before 16.1.2.2, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5, and all versions of 13.1.x, when a BIG-IP LTM Client SSL pro…

Fix: 14.1.5 / 15.1.6.1+
Fix from $1,950 2022-08-04
Big Ip Access Policy Manager HIGH 7.5
CVE-2022-33203

In BIG-IP Versions 16.1.x before 16.1.3, 15.1.x before 15.1.6.1, and 14.1.x before 14.1.5, when a BIG-IP APM access policy with Service Connect agent…

Fix: 14.1.5 / 15.1.6.1+
Fix from $1,950 2022-08-04
Big Ip Access Policy Manager MEDIUM 6.7
CVE-2022-33962

In BIG-IP Versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5.1, and all versions of 13.1.x, certai…

Fix: 14.1.5.1 / 15.1.6.1+
Fix from $1,600 2022-08-04
Nginx Ingress Controller MEDIUM 6.5
CVE-2022-30535

In versions 2.x before 2.3.0 and all versions of 1.x, An attacker authorized to create or update ingress objects can obtain the secrets available to …

Fix: 2.3.0+
Fix from $1,600 2022-08-04
Big Ip Domain Name System MEDIUM 6.5
CVE-2022-33947

In BIG-IP Versions 16.1.x before 16.1.3, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5, and all versions of 13.1.x, a vulnerability exists in undisclo…

Fix: 14.1.5 / 15.1.6.1+
Fix from $1,600 2022-08-04
Njs HIGH 7.5
CVE-2022-34032

Nginx NJS v0.7.5 was discovered to contain a segmentation violation in the function njs_value_own_enumerate at src/njs_value.c.

No fix yet
Fix from $1,950 2022-07-18
Njs CRITICAL 9.1
CVE-2022-34029

Nginx NJS v0.7.4 was discovered to contain an out-of-bounds read via njs_scope_value at njs_scope.h.

Patch available
Fix from $2,300 2022-07-18
Njs HIGH 7.5
CVE-2022-34027

Nginx NJS v0.7.4 was discovered to contain a segmentation violation via njs_value_property at njs_value.c.

No fix yet
Fix from $1,950 2022-07-18
Njs HIGH 7.5
CVE-2022-34028

Nginx NJS v0.7.5 was discovered to contain a segmentation violation via njs_utf8_next at src/njs_utf8.h.

No fix yet
Fix from $1,950 2022-07-18
Njs HIGH 7.5
CVE-2022-34030

Nginx NJS v0.7.5 was discovered to contain a segmentation violation via njs_djb_hash at src/njs_djb_hash.c.

No fix yet
Fix from $1,950 2022-07-18
Njs HIGH 7.5
CVE-2022-34031

Nginx NJS v0.7.5 was discovered to contain a segmentation violation via njs_value_to_number at src/njs_value_conversion.h.

No fix yet
Fix from $1,950 2022-07-18
Njs MEDIUM 5.5
CVE-2022-31306

Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function njs_array_convert_to_slow_array at src/njs_array.c.

Patch available
Fix from $1,600 2022-06-21
Njs MEDIUM 5.5
CVE-2022-31307

Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function njs_string_offset at src/njs_string.c.

Patch available
Fix from $1,600 2022-06-21
Njs MEDIUM 5.5
CVE-2022-32414

Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function njs_vmcode_interpreter at src/njs_vmcode.c.

Patch available
Fix from $1,600 2022-06-21
Njs CRITICAL 9.8
CVE-2022-29379

Nginx NJS v0.7.3 was discovered to contain a stack overflow in the function njs_default_module_loader at /src/njs/src/njs_module.c. NOTE: multiple th…

Patch available
Fix from $2,300 2022-05-25
Njs HIGH 7.5
CVE-2022-29369

Nginx NJS v0.7.2 was discovered to contain a segmentation violation via njs_lvlhsh_bucket_find at njs_lvlhsh.c.

Patch available
Fix from $1,950 2022-05-12
Big Ip Access Policy Manager HIGH 7.5
CVE-2022-29491

On F5 BIG-IP LTM, Advanced WAF, ASM, or APM 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5, 14.1.x versions prior to 14.1.4.6, an…

Mitigation only
Fix from $1,950 2022-05-05
Big Ip Access Policy Manager MEDIUM 5.3
CVE-2022-29479

On F5 BIG-IP 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13.1.x versions prior to 13.1.5, and all versions of 12.1.x and 11…

Mitigation only
Fix from $1,600 2022-05-05
Big Ip Access Policy Manager MEDIUM 5.3
CVE-2022-29480

On F5 BIG-IP 13.1.x versions prior to 13.1.5, and all versions of 12.1.x and 11.6.x, when multiple route domains are configured, undisclosed requests…

Mitigation only
Fix from $1,600 2022-05-05
Big Ip Advanced Firewall Manager HIGH 8.8
CVE-2022-28716

On 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13.1.x versions prior to 13.1.5, and all …

Fix: 13.1.5 / 14.1.4.6+
Fix from $1,950 2022-05-05
Big Ip Access Policy Manager HIGH 7.8
CVE-2022-28714

On F5 BIG-IP APM 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13.1.x versions prior to 13…

Mitigation only
Fix from $1,950 2022-05-05
Access Policy Manager Clients HIGH 7.8
CVE-2022-29263

On F5 BIG-IP APM 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13.1.x versions prior to 13…

Mitigation only
Fix from $1,950 2022-05-05
Big Ip Access Policy Manager HIGH 7.5
CVE-2022-28691

On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5, 14.1.x versions prior to 14.1.4.6, and 13.1.x versions prior to 13.1…

Mitigation only
Fix from $1,950 2022-05-05
Big Ip Access Policy Manager HIGH 7.5
CVE-2022-28701

On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, when the stream profile is configured on a virtual server, undisclosed requests can cause an increase…

Mitigation only
Fix from $1,950 2022-05-05
Big Ip Access Policy Manager HIGH 7.5
CVE-2022-28705

On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, and 13.1.x versions prior to 13…

Mitigation only
Fix from $1,950 2022-05-05
Big Ip Access Policy Manager HIGH 7.5
CVE-2022-28706

On F5 BIG-IP 16.1.x versions prior to 16.1.2 and 15.1.x versions prior to 15.1.5.1, when the DNS resolver configuration is used, undisclosed requests…

Mitigation only
Fix from $1,950 2022-05-05