F5 BIG-IP is an application delivery platform from F5 that integrates network traffic orchestration, load balancing, intelligent DNS, remote access policy management, etc. An improper privilege management vulnerability exists in F5 BIG-IP iControl REST, which can be exploited by an authenticated attacker with administrator status when BIG-IP is running in appliance mode to be able to use undisclosed iControl REST endpoints to bypass device mode restrictions and cross security boundaries.