Skip to main content

Vendor/product archive

f5 / big-ip_application_security_manager CVEs

Beta · best-effort

573 CVEs tagged to f5 / big-ip_application_security_manager36 Critical, 342 High, 186 Medium, 9 Low, 0 Unrated.

CVE-2017-6155

Published Apr 13, 2018

On F5 BIG-IP 13.0.0, 12.0.0-12.1.3.1, 11.6.0-11.6.2, 11.4.1-11.5.5, or 11.2.1, malformed SPDY or HTTP/2 requests may result in a disruption of service to TMM. Data plane is only e…

CVSS 7.5 · High

CVE-2017-6148

Published Apr 13, 2018

Responses to SOCKS proxy requests made through F5 BIG-IP version 13.0.0, 12.0.0-12.1.3.1, 11.6.1-11.6.2, or 11.5.1-11.5.5 may cause a disruption of services provided by TMM. The d…

CVSS 7.5 · High

CVE-2018-5509

Published Mar 22, 2018

On F5 BIG-IP versions 13.0.0 or 12.1.0 - 12.1.3.1, when a specifically configured virtual server receives traffic of an undisclosed nature, TMM will crash and take the configured…

CVSS 7.5 · High

CVE-2017-6154

Published Mar 1, 2018

On F5 BIG-IP systems running 13.0.0, 12.1.0 - 12.1.3.1, or 11.6.1 - 11.6.2, the BIG-IP ASM bd daemon may core dump memory under some circumstances when processing undisclosed type…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-6150

Published Mar 1, 2018

Under certain conditions for F5 BIG-IP systems 13.0.0 or 12.1.0 - 12.1.3.1, using FastL4 profiles, when the Reassemble IP Fragments option is disabled (default), some specific lar…

CVSS 7.5 · High

CVE-2017-6167

Published Dec 21, 2017

In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, Link Controller, PEM and WebSafe software version 13.0.0 and 12.1.0 - 12.1.2, race conditions in iControl REST may lead to co…

CVSS 7.5 · High

CVE-2017-6138

Published Dec 21, 2017

In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, GTM, Link Controller, PEM and WebSafe software version 13.0.0 and 12.1.0 - 12.1.2, malicious requests made to virtual servers…

CVSS 7.5 · High

CVE-2017-6136

Published Dec 21, 2017

In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, GTM, Link Controller, PEM and WebSafe software version 13.0.0 and 12.0.0 - 12.1.2, undisclosed traffic patterns sent to BIG-I…

CVSS 5.9 · Medium

CVE-2017-6135

Published Dec 21, 2017

In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, GTM, Link Controller, PEM and WebSafe software version 13.0.0, a slow memory leak as a result of undisclosed IPv4 or IPv6 pac…

CVSS 7.5 · High

CVE-2017-6134

Published Dec 21, 2017

In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, GTM, Link Controller, PEM and WebSafe software version 13.0.0, 12.1.0 - 12.1.2 and 11.5.1 - 11.6.1, an undisclosed sequence o…

CVSS 6.5 · Medium

CVE-2017-6133

Published Dec 21, 2017

In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, Link Controller, PEM and WebSafe software version 13.0.0 and 12.1.0 - 12.1.2, undisclosed HTTP requests may cause a denial of…

CVSS 7.5 · High

CVE-2017-6132

Published Dec 21, 2017

In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, GTM, Link Controller, PEM and Websafe software version 13.0.0, 12.0.0 to 12.1.2, 11.6.0 to 11.6.1 and 11.5.0 - 11.5.4, an und…

CVSS 7.5 · High

CVE-2017-6163

Published Oct 27, 2017

In F5 BIG-IP LTM, AAM, AFM, APM, ASM, Link Controller, PEM, PSM software version 12.0.0 to 12.1.2, 11.6.0 to 11.6.1, 11.4.0 to 11.5.4, when a virtual server uses the standard conf…

CVSS 5.9 · Medium
Showing 476-500 of 573 CVEsPage 20 of 23