Vulnerability index

Browse CVEs

865 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Big Ip Access Policy Manager HIGH 7.5
CVE-2020-5859

On BIG-IP 15.1.0.1, specially formatted HTTP/3 messages may cause TMM to produce a core file.

Fix: after 15.0.1.1
Fix from $1,950 2020-03-27
Big Ip Access Policy Manager HIGH 7.5
CVE-2020-5861

On BIG-IP 12.1.0-12.1.5, the TMM process may produce a core file in some cases when Ram Cache incorrectly optimizes stored data resulting in memory e…

Fix: after 12.1.5
Fix from $1,950 2020-03-27
Big Ip Access Policy Manager HIGH 7.5
CVE-2020-5862

On BIG-IP 15.1.0-15.1.0.1, 15.0.0-15.0.1.1, and 14.1.0-14.1.2.2, under certain conditions, TMM may crash or stop processing new traffic with the DPDK…

Fix: after 15.1.0.1
Fix from $1,950 2020-03-27
Big Ip Access Policy Manager MEDIUM 5.9
CVE-2013-3587EPSS 6%

The HTTPS protocol, as used in unspecified web applications, can encrypt compressed data without properly obfuscating the length of the unencrypted d…

Fix: after 12.1.2
Fix from $1,600 2020-02-21
Big Ip Access Policy Manager HIGH 7.5
CVE-2020-5856

On BIG-IP 15.0.0-15.0.1.1 and 14.1.0-14.1.2.2, while processing specifically crafted traffic using the default 'xnet' driver, Virtual Edition instanc…

Fix: 14.1.2.3 / 15.1.0+
Fix from $1,950 2020-02-06
Big Ip Access Policy Manager MEDIUM 5.9
CVE-2020-5854

On BIG-IP 15.0.0-15.0.1.1, 14.1.0-14.1.2.2, 14.0.0-14.0.1, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.6.0-11.6.5.1, the tmm crashes under certain circums…

Fix: 12.1.5.1 / 13.1.3.2+
Fix from $1,600 2020-02-06
Big Ip Local Traffic Manager HIGH 7.5
CVE-2020-5852

Undisclosed traffic patterns received may cause a disruption of service to the Traffic Management Microkernel (TMM). This vulnerability affects TMM t…

Mitigation only
Fix from $1,950 2020-01-14
Big Ip Access Policy Manager MEDIUM 5.4
CVE-2020-5853

In BIG-IP APM portal access on versions 15.0.0-15.1.0, 14.0.0-14.1.2.3, 13.1.0-13.1.3.2, 12.1.0-12.1.5, and 11.5.2-11.6.5.1, when backend servers ser…

Fix: after 15.1.0
Fix from $1,600 2020-01-14
Nginx MEDIUM 5.3
CVE-2019-20372EPSS 15%

NGINX before 1.17.7, with certain error_page configurations, allows HTTP request smuggling, as demonstrated by the ability of an attacker to read una…

Fix: 1.17.7 / 13.0+
Fix from $1,600 2020-01-09
Big Ip Access Policy Manager MEDIUM 5.3
CVE-2014-5209

An Information Disclosure vulnerability exists in NTP 4.2.7p25 private (mode 6/7) messages via a GET_RESTRICT control message, which could let a mali…

Fix: after 14.1.0
Fix from $1,600 2020-01-08
Big Iq Centralized Management MEDIUM 5.5
CVE-2019-19151

On BIG-IP versions 15.0.0-15.1.0, 14.0.0-14.1.2.3, 13.1.0-13.1.3.2, 12.1.0-12.1.5, and 11.5.2-11.6.5.1, BIG-IQ versions 7.0.0, 6.0.0-6.1.0, and 5.0.0…

Fix: after 15.1.0
Fix from $1,600 2019-12-23
Big Ip Access Policy Manager HIGH 7.8
CVE-2019-6685

On BIG-IP versions 15.0.0-15.0.1.1, 14.1.0-14.1.2.2, 14.0.0-14.0.1, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.5.2-11.6.5.1, users with access to edit iR…

Fix: 13.1.3.2 / 14.0.1.1+
Fix from $1,950 2019-12-23
Big Ip Access Policy Manager HIGH 7.5
CVE-2019-6680

On BIG-IP versions 15.0.0-15.0.1, 14.1.0-14.1.2, 14.0.0-14.0.1, 13.1.0-13.1.3.2, 12.1.0-12.1.5, and 11.5.2-11.6.5, while processing traffic through a…

Fix: 11.6.5.1 / 14.0.1.1+
Fix from $1,950 2019-12-23
Big Ip Local Traffic Manager HIGH 7.5
CVE-2019-6681

On BIG-IP versions 15.0.0-15.0.1.1, 14.1.0-14.1.2, 14.0.0-14.0.1, 13.1.0-13.1.3.1, and 12.1.0-12.1.5, a memory leak in Multicast Forwarding Cache (MF…

Fix: 13.1.3.2 / 14.0.1.1+
Fix from $1,950 2019-12-23
Big Ip Access Policy Manager HIGH 7.5
CVE-2019-6683

On versions 15.0.0-15.0.1.1, 14.1.0-14.1.2.2, 14.0.0-14.0.1, 13.1.0-13.1.3.2, 12.1.0-12.1.5, and 11.5.2-11.6.5.1, BIG-IP virtual servers with Loose I…

Fix: 14.0.1.1 / 14.1.2.3+
Fix from $1,950 2019-12-23
Big Ip Access Policy Manager HIGH 7.5
CVE-2019-6684

On versions 15.0.0-15.0.1.1, 14.0.0-14.1.2.2, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.5.2-11.6.5.1, under certain conditions, a multi-bladed BIG-IP Vi…

Fix: 13.1.3.2 / 14.1.2.3+
Fix from $1,950 2019-12-23
Big Ip Application Security Manager HIGH 7.4
CVE-2019-6687

On versions 15.0.0-15.0.1.1, the BIG-IP ASM Cloud Security Services profile uses a built-in verification mechanism that fails to properly authenticat…

Fix: 15.1.0+
Fix from $1,950 2019-12-23
Big Ip Local Traffic Manager MEDIUM 5.3
CVE-2019-6686

On BIG-IP versions 15.0.0-15.0.1.1, 14.1.0-14.1.2, 14.0.0-14.0.1, 13.1.0-13.1.3.1, the Traffic Management Microkernel (TMM) might stop responding aft…

Fix: 13.1.3.2 / 14.0.1.1+
Fix from $1,600 2019-12-23
Big Ip Access Policy Manager HIGH 7.5
CVE-2019-6677

On BIG-IP versions 15.0.0-15.0.1, 14.1.0-14.1.2, 14.0.0-14.0.1, 13.1.0-13.1.3.1, and 12.1.0-12.1.5, under certain conditions when using custom TCP co…

Fix: 13.1.3.2 / 14.0.1.1+
Fix from $1,950 2019-12-23
Big Ip Application Security Manager HIGH 7.5
CVE-2019-6682

On versions 15.0.0-15.0.1.1, 14.0.0-14.1.2.2, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.5.2-11.6.5.1, the BIG-IP ASM system may consume excessive resour…

Fix: 13.1.3.2 / 14.1.2.3+
Fix from $1,950 2019-12-23
Big Ip Access Policy Manager MEDIUM 5.3
CVE-2019-6678

On BIG-IP versions 15.0.0-15.0.1, 14.1.0-14.1.2.2, 14.0.0-14.0.1, and 13.1.0-13.1.3.1, the TMM process may restart when the packet filter feature is …

Fix: 13.1.3.2 / 14.0.1.1+
Fix from $1,600 2019-12-23
Big Ip Access Policy Manager HIGH 7.5
CVE-2019-6676

On versions 15.0.0-15.0.1, 14.0.0-14.1.2.2, and 13.1.0-13.1.3.1, TMM may restart on BIG-IP Virtual Edition (VE) when using virtio direct descriptors …

Fix: 13.1.3.2 / 14.1.2.3+
Fix from $1,950 2019-12-23
Big Ip Application Security Manager CRITICAL 9.4
CVE-2019-6665

On BIG-IP ASM 15.0.0-15.0.1, 14.1.0-14.1.2, 14.0.0-14.0.1, and 13.1.0-13.1.3.1, BIG-IQ 6.0.0 and 5.2.0-5.4.0, iWorkflow 2.3.0, and Enterprise Manager…

Fix: after 15.0.1
Fix from $2,300 2019-11-27
Big Ip Access Policy Manager HIGH 7.5
CVE-2019-6666

On BIG-IP 15.0.0-15.0.1, 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, and 13.1.0-13.1.1.4, the TMM process may produce a core file when an upstream server or ca…

Fix: after 15.0.1
Fix from $1,950 2019-11-27
Big Ip Access Policy Manager HIGH 7.5
CVE-2019-6667

On BIG-IP 15.0.0-15.0.1, 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.1.0-13.1.1.5, 12.1.0-12.1.4.1, and 11.5.1-11.6.5, under certain conditions, TMM may con…

Fix: after 15.0.1
Fix from $1,950 2019-11-27
Big Ip Access Policy Manager HIGH 7.5
CVE-2019-6669

On BIG-IP 15.0.0-15.0.1, 14.1.0-14.1.2, 14.0.0-14.0.1, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.5.1-11.6.5.1, undisclosed traffic flow may cause TMM to…

Fix: after 15.0.1
Fix from $1,950 2019-11-27
Big Ip Access Policy Manager HIGH 7.5
CVE-2019-6671

On BIG-IP 15.0.0-15.0.1, 14.1.0-14.1.2, 14.0.0-14.0.1, and 13.1.0-13.1.3.1, under certain conditions tmm may leak memory when processing packet fragm…

Fix: after 15.0.1
Fix from $1,950 2019-11-27
Big Ip Advanced Firewall Manager HIGH 7.5
CVE-2019-6672

On BIG-IP AFM 15.0.0-15.0.1, 14.0.0-14.1.2, and 13.1.0-13.1.3.1, when bad-actor detection is configured on a wildcard virtual server on platforms wit…

Fix: after 15.0.1
Fix from $1,950 2019-11-27
Big Ip Access Policy Manager HIGH 7.5
CVE-2019-6673

On versions 15.0.0-15.0.1 and 14.0.0-14.1.2, when the BIG-IP is configured in HTTP/2 Full Proxy mode, specifically crafted requests may cause a disru…

Fix: after 15.0.1
Fix from $1,950 2019-11-27
Big Ip Access Policy Manager MEDIUM 5.5
CVE-2019-6668

The BIG-IP APM Edge Client for macOS bundled with BIG-IP APM 15.0.0-15.0.1, 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.1.0-13.1.1.5, 12.1.0-12.1.5, and 11.…

Fix: after 15.0.1
Fix from $1,600 2019-11-27