Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

BIG-IP — Vulnerabilities & Security Advisories 368

All 368 CVE vulnerabilities found in BIG-IP, with AI-generated Chinese analysis, references, and POCs.

This page presents a comprehensive aggregation of Common Weakness Enumeration data specifically related to F5 Networks BIG-IP products. It serves as a centralized repository for tracking security flaws, configuration issues, and design flaws identified within this specific enterprise networking platform. The collection includes a wide variety of vulnerability types, ranging from remote code execution and privilege escalation to cross-site scripting and insecure default configurations. This dataset covers historical records spanning several years, capturing both recently disclosed flaws and legacy issues that have been previously resolved or remain relevant due to widespread deployment. By consolidating these entries, the page provides a continuous timeline of security incidents affecting BIG-IP systems, allowing for a holistic view of the product's security posture over time rather than relying on isolated, snapshot-style reports. Visitors can use this resource to track vendor advisories and monitor how F5 Networks responds to emerging threats. It enables users to understand the broader context of specific weakness classes, such as injection flaws or buffer overflows, as they manifest in BIG-IP environments. Furthermore, administrators and security analysts can look up a product’s vulnerability history to assess risk exposure, prioritize patching efforts, and correlate past incidents with current configurations. This aggregated view facilitates better decision-making by highlighting trends, recurring issues, and the effectiveness of historical mitigation strategies, ultimately supporting more robust security management practices for organizations relying on F5 BIG-IP infrastructure.

Vendor: F5 Networks, Inc.

CVE IDTitleCVSSSeverityPublished
CVE-2024-21763 BIG-IP AFM vulnerability CWE-476 7.5 High2024-02-14
CVE-2024-23805 F5 Application Visibility and Reporting module and BIG-IP Advanced WAF/ASM vulnerability CWE-131 7.5 High2024-02-14
CVE-2024-23308 BIG-IP Advanced WAF and ASM vulnerability CWE-476 7.5 High2024-02-14
CVE-2024-21789 BIG-IP ASM and Advanced WAF vulnerability CWE-772 7.5 High2024-02-14
CVE-2024-24775 BIG-IP TMM vulnerability CWE-476 7.5 High2024-02-14
CVE-2024-23603 BIG-IP Advanced WAF and ASM Configuration utility vulnerability CWE-89 3.8 Low2024-02-14
CVE-2024-23314 BIG-IP HTTP/2 vulnerability CWE-908 7.5 High2024-02-14
CVE-2024-22093 Appliance mode iControl REST vulnerability CWE-77 8.7 High2024-02-14
CVE-2024-23979 BIG-IP SSL Client Certificate LDAP and CRLDP Authentication profiles vulnerability CWE-770 7.5 High2024-02-14
CVE-2024-21849 BIG-IP Websockets vulnerability CWE-466 7.5 High2024-02-14
CVE-2024-21782 BIG-IP and BIG-IQ secure copy vulnerability CWE-78 6.7 Medium2024-02-14
CVE-2024-21771 F5 AFM Signature Matching Vulnerability CWE-770 7.5 High2024-02-14
CVE-2024-23976 BIG-IP Appliance mode iAppsLX vulnerability CWE-266 6.0 Medium2024-02-14
CVE-2024-22389 BIG-IP iControl REST API Vulnerability CWE-613 7.2 High2024-02-14
CVE-2023-46748 BIG-IP Configuration utility authenticated SQL injection vulnerability CWE-89 8.8 High2023-10-26
CVE-2023-46747 BIG-IP Configuration utility unauthenticated remote code execution vulnerability CWE-288 9.8 Critical2023-10-26
CVE-2023-45219 BIG-IP tmsh vulnerability CWE-200 4.4 Medium2023-10-10
CVE-2023-43746 BIG-IP Appliance mode external monitor vulnerability CWE-267 8.7 High2023-10-10
CVE-2023-43485 BIGIP and BIG-IQ TACACS+ audit log Vulnerability CWE-532 5.5 Medium2023-10-10
CVE-2023-42768 BIG-IP iControl REST vulnerability CWE-613 7.2 High2023-10-10
CVE-2023-41964 BIG-IP and BIG-IQ Database Variable vulnerability CWE-312 4.3 Medium2023-10-10
CVE-2023-41373 BIG-IP Configuration Utility vulnerability CWE-22 9.9 Critical2023-10-10
CVE-2023-41253 BIG-IP DNS TSIG Key vulnerability CWE-532 5.5 Medium2023-10-10
CVE-2023-41085 BIG-IP IPSEC vulnerability CWE-755 7.5 High2023-10-10
CVE-2023-40542 BIG-IP TCP Profile vulnerability CWE-770 7.5 High2023-10-10
CVE-2023-40537 Multi-blade VIPRION Configuration utility session cookie vulnerability CWE-613 8.1 High2023-10-10
CVE-2023-40534 BIG-IP HTTP/2 vulnerability CWE-401 7.5 High2023-10-10
CVE-2023-39447 BIG-IP APM Guided Configuration vulnerability CWE-532 4.4 Medium2023-10-10
CVE-2023-38423 BIG-IP Configuration utility vulnerability CWE-79 5.4 Medium2023-08-02
CVE-2023-38419 BIG-IP and BIG-IQ iControl SOAP vulnerability CWE-755 4.3 Medium2023-08-02

All 368 known CVE vulnerabilities affecting BIG-IP with full Chinese analysis, references, and POCs where available.