Lucene search

K
f5F5F5:K53854428
HistoryAug 24, 2021 - 12:00 a.m.

K53854428 : iControl SOAP vulnerability CVE-2021-23026

2021-08-2400:00:00
my.f5.com
30
big-ip
big-iq
icontrol soap
csrf
cve-2021-23026
authentication
exploitation
compromise

AI Score

8.7

Confidence

High

EPSS

0.001

Percentile

31.5%

Security Advisory Description

BIG-IP and BIG-IQ are vulnerable to cross-site request forgery (CSRF) attacks through iControl SOAP. (CVE-2021-23026)

Impact

An attacker may trick authenticated users into performing critical actions. This vulnerability can only be exploited through the control plane and cannot be exploited through the data plane. Exploitation can lead to complete system compromise.

AI Score

8.7

Confidence

High

EPSS

0.001

Percentile

31.5%