Description
On BIG-IP AFM version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3, 14.1.x before 14.1.4.2, 13.1.x before 13.1.4.1, and all versions of 12.1.x, a SQL injection vulnerability exists in an undisclosed page of the BIG-IP Configuration utility. This issue is exposed only when BIG-IP AFM is provisioned. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-10158 | On BIG-IP AFM version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3, 14.1.x before 14.1.4.2, 13.1.x before 13.1.4.1, and all versions of 12.1.x, a SQL injection vulnerability exists in an undisclosed page of the BIG-IP Configuration utility. This issue is exposed only when BIG-IP AFM is provisioned. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated. |
References
| Link | Providers |
|---|---|
| https://support.f5.com/csp/article/K94255403 |
|
History
No history.
Status: PUBLISHED
Assigner: f5
Published:
Updated: 2024-08-03T18:58:26.369Z
Reserved: 2021-01-06T00:00:00.000Z
Link: CVE-2021-23040
No data.
Status : Modified
Published: 2021-09-14T15:15:06.967
Modified: 2024-11-21T05:51:12.213
Link: CVE-2021-23040
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD