An XML External Entity Injection (XXE) vulnerability exists in a BIG-IP component. This vulnerability may allow a user who is logged in to the BIG-IP Configuration utility to download arbitrary files from the file system.
Impact
An attacker may be able to exploit the vulnerability and retrieve arbitrary files, perform Denial of Service attacks, execute system level commands, or compromise the password table.