8.4

CVSS3.1

CVE-2024-56132 - Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS Co…

Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS Command Injection. This issue affects:  Product Affected Versions LoadMaster From 7.2.55.0 to 7.2.60.1 (inclusive)    From 7.2.49.0 to 7.2.54.12 (inclusive)    …

📅 Published: Feb. 5, 2025, 6:01 p.m. 🔄 Last Modified: July 31, 2025, 2:11 p.m.

8.4

CVSS3.1

CVE-2024-56131 - Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS Co…

Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS Command Injection. This issue affects:  Product Affected Versions LoadMaster From 7.2.55.0 to 7.2.60.1 (inclusive)    From 7.2.49.0 to 7.2.54.12 (inclusive)    …

📅 Published: Feb. 5, 2025, 6 p.m. 🔄 Last Modified: July 31, 2025, 2:13 p.m.

5.3

CVSS4.0

CVE-2025-23419 - TLS Session Resumption Vulnerability

When multiple server blocks are configured to share the same IP address and port, an attacker can use session resumption to bypass client certificate authentication requirements on these servers. This vulnerability arises when TLS Session Tickets https://nginx.org/en/docs/http/ngx_http_ssl_module.…

📅 Published: Feb. 5, 2025, 5:31 p.m. 🔄 Last Modified: Jan. 27, 2026, 1:30 p.m.

6.7

CVSS4.0

CVE-2025-23413 - BIG-IP Next Central Manager vulnerability

When users log in through the webUI or API using local authentication, BIG-IP Next Central Manager may log sensitive information in the pgaudit log files. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

📅 Published: Feb. 5, 2025, 5:31 p.m. 🔄 Last Modified: Nov. 12, 2025, 2:40 p.m.

8.7

CVSS4.0

CVE-2025-20029 - BIG-IP iControl REST and tmsh vulnerability

Command injection vulnerability exists in iControl REST and BIG-IP TMOS Shell (tmsh) save command, which may allow an authenticated attacker to execute arbitrary system commands. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

📅 Published: Feb. 5, 2025, 5:31 p.m. 🔄 Last Modified: Feb. 26, 2026, 7:09 p.m.

7.1

CVSS4.0

CVE-2025-24319 - BIG-IP Next Central Manager vulnerability

When BIG-IP Next Central Manager is running, undisclosed requests to the BIG-IP Next Central Manager API can cause the BIG-IP Next Central Manager Node's Kubernetes service to terminate. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

📅 Published: Feb. 5, 2025, 5:31 p.m. 🔄 Last Modified: Feb. 4, 2026, 5:47 p.m.

5.1

CVSS4.0

CVE-2025-24320 - BIG-IP Configuration utility vulnerability

A stored cross-site scripting (XSS) vulnerability exists in an undisclosed page of the BIG-IP Configuration utility that allows an attacker to run JavaScript in the context of the currently logged-in user. This vulnerability is due to an incomplete fix for CVE-2024-31156 https://my.f5.com/manage/s…

📅 Published: Feb. 5, 2025, 5:31 p.m. 🔄 Last Modified: Feb. 26, 2026, 7:09 p.m.

8.7

CVSS4.0

CVE-2025-24497 - BIG-IP PEM vulnerability

When URL categorization is configured on a virtual server, undisclosed requests can cause TMM to terminate.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

📅 Published: Feb. 5, 2025, 5:31 p.m. 🔄 Last Modified: Aug. 6, 2025, 4:19 p.m.

8.7

CVSS4.0

CVE-2025-24312 - BIG-IP AFM vulnerability

When BIG-IP AFM is provisioned with IPS module enabled and protocol inspection profile is configured on a virtual server or firewall rule or policy, undisclosed traffic can cause an increase in CPU resource utilization.   Note: Software versions which have reached End of Technical Support (EoTS) a…

📅 Published: Feb. 5, 2025, 5:31 p.m. 🔄 Last Modified: Nov. 12, 2025, 4:38 p.m.

8.7

CVSS4.0

CVE-2025-22846 - BIG-IP SIP Vulnerability

When SIP Session and Router ALG profiles are configured on a Message Routing type virtual server, undisclosed traffic can cause the Traffic Management Microkernel (TMM) to terminate.   Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

📅 Published: Feb. 5, 2025, 5:31 p.m. 🔄 Last Modified: Sept. 10, 2025, 3:57 p.m.
Total resulsts: 343924
Page 6312 of 34,393
« previous page » next page
Filters