Podatność CVE-2022-41617


Publikacja: 2022-10-19   Modyfikacja: 2022-10-20

Opis:
In versions 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5.1, and 13.1.x before 13.1.5.1, When the Advanced WAF / ASM module is provisioned, an authenticated remote code execution vulnerability exists in the BIG-IP iControl REST interface.

Typ:

CWE-77

(Improper Neutralization of Special Elements used in a Command ('Command Injection'))

 Referencje:
https://support.f5.com/csp/article/K11830089

Copyright 2024, cxsecurity.com

 

Back to Top