Description
On versions beginning in 7.1.5 to before 7.2.3.1, a DLL hijacking vulnerability exists in the BIG-IP Edge Client for Windows. User interaction and administrative privileges are required to exploit this vulnerability because the victim user needs to run the executable on the system and the attacker requires administrative privileges for modifying the files in the trusted search path. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
Published: 2023-02-01
Score: 6.5 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-26447 On versions beginning in 7.1.5 to before 7.2.3.1, a DLL hijacking vulnerability exists in the BIG-IP Edge Client for Windows. User interaction and administrative privileges are required to exploit this vulnerability because the victim user needs to run the executable on the system and the attacker requires administrative privileges for modifying the files in the trusted search path. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
History

Wed, 26 Mar 2025 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Subscriptions

F5 Big-ip Access Policy Manager Big-ip Edge
cve-icon MITRE

Status: PUBLISHED

Assigner: f5

Published:

Updated: 2025-03-26T18:43:36.643Z

Reserved: 2023-01-13T06:43:46.165Z

Link: CVE-2023-22283

cve-icon Vulnrichment

Updated: 2024-08-02T10:07:06.158Z

cve-icon NVD

Status : Modified

Published: 2023-02-01T18:15:10.727

Modified: 2024-11-21T07:44:27.347

Link: CVE-2023-22283

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses