Known vulnerabilities in BIG-IP Advanced WAF 16.1.0
Vendor:
F5 Networks
Software:
BIG-IP Advanced WAF
Version:
16.1.0
Software CPE:
cpe:2.3:a:f5_networks:big-ip_advanced_waf:*:*:*:*:*:*:*:*
Website:
https://f5.com/
Total vulnerabilities:
2
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
7.2
Vulnerabilities by Severity
17.5.0
17.1.2
17.1.1
17.1.0
15.1.10.7
15.1.10.6
15.1.10.5
15.1.10.4
15.1.10.3
15.1.10.2
15.1.10.1
15.1.10.0
17.5.1
15.1.10.8
17.1.3
14.1.4.2
13.1.0.8
14.1.4.5
15.1.4.1
16.1.2
14.1.4.4
15.1.4
16.1.1
14.1.4.1
12.1.6
16.1.0
13.1.4.1
14.1.4.3
15.1.3.1
16.0.1.2
13.1.4
15.1.3
11.6.5.3
12.1.5.3
14.1.4
13.1.3.6
15.1.2.1
16.0.1.1
14.1.3.1
13.1.3.4
13.1.3.5
14.1.3
15.1.2
16.0.1
15.1.1
14.1.2.8
13.0.0
12.1.2 HF1
14.0.0
13.0.0 HF3
12.1.2 HF2
11.6.2 HF1
15.1.0.2
14.1.2-0.89.37
14.1.2.5
12.1.5.2
11.6.1
11.6.2
11.6.3
11.6.4
11.6.5
12.1.0
12.1.1
12.1.2
12.1.3
12.1.4
12.1.5
13.1.0
13.1.1
13.1.3
14.1.0
14.1.2
15.0.0
15.0.1
15.1.0
16.0.0
Vulnerabilities (2)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU59846 - Unrestricted Upload of File with Dangerous Type CVE-2022-23026 |
CWE-434 | Medium | 14.1.4.5, 15.1.4.1, 16.1.2 | 19.01.2022 |
SB2022011950 |
||
| #VU59844 - Improper Restriction of XML External Entity Reference ('XXE') CVE-2022-23031 |
CWE-611 | Low | 14.1.4.4, 15.1.4, 16.1.1 | 19.01.2022 |
SB2022011948 |