Known vulnerabilities in BIG-IP DNS 15.1.0.5
Vendor:
F5 Networks
Software:
BIG-IP DNS
Version:
15.1.0.5
Software CPE:
cpe:2.3:h:f5_networks:big-ip_dns:*:*:*:*:*:*:*:*
Website:
https://f5.com/
Total vulnerabilities:
53
Public exploits:
9
Known exploited (KEV):
2
Highest CVSSv4 Score:
9.3
Vulnerabilities by Severity
12.1.3.3
13.1.3.3
13.1.3.1
13.1.1.4
13.1.1.3
13.1.1.2
13.1.1.1
13.1.0.7
13.1.0.5
14.1.2.2
16.1.6
17.5.1
17.5.0
17.1.2
17.1.1.4
17.1.1.3
17.1.1.2
17.1.1.1
16.0.1.1.9.6
15.1.10.5
15.1.10.4
15.1.10.3
15.1.10.2
15.1.10.1
17.1.0
17.1.1
17.1.0.3
17.1.0.2
17.1.0.1
16.1.5
16.1.4.3
16.1.4.2
16.1.4.1
16.1.4
16.1.3.5
16.1.3.4
16.1.2.2
16.1.2.1
16.1.1
15.1.10
15.1.9.1
15.1.9
15.1.8.2
15.1.7
15.1.5.1
15.1.4.1
15.1.0.3
14.1.4.2
14.1.5.2
14.1.5.1
15.1.8
16.1.3.2
16.1.3.1
17.0.0.1
14.1.5.3
15.1.8.1
16.1.3.3
17.0.0.2
16.1.2
15.1.5
15.1.6
13.1.5
14.1.5
15.1.6.1
16.1.3
17.0.0
15.1.4
14.1.4.4
12.1.6
13.1.4
16.1.0
13.1.4.1
14.1.4.3
15.1.3.1
16.0.1.2
15.1.3
11.6.5.3
12.1.5.3
14.1.4
13.1.0.4
13.1.3.6
15.1.2.1
16.0.1.1
14.1.3.1
14.1.2.8
13.1.3.5
14.1.3
16.0.1
15.1.2
15.1.1
13.0.0 HF3
12.1.2 HF2
11.6.2 HF1
15.1.0.5
14.1.2.7
16.0.0
14.1.2-0.89.37
14.1.2.5
15.0.1.4
15.1.0.4
14.1.2.6
13.1.3.4
12.1.5.2
11.6.5.2
15.0.1.3
14.1.2.4
15.0.1.2
15.1.0.2
15.1.0.1
12.1.5.1
13.1.3.2
14.1.2.3
15.0.1.1
14.1.0.6
14.0.0.5
11.6.5.1
11.5.7
11.5.8
11.5.9
11.5.10
11.6.5
12.1.4
12.1.5
15.0.1
15.1.0
15.0.0
14.1.2.1.0.122.4-ENG Hotfix
14.1.2.1.0.115.4-ENG Hotfix
14.1.2.1.0.111.4-ENG Hotfix
14.1.2.1.0.105.4-ENG Hotfix
14.1.2.1.0.99.4-ENG Hotfix
14.1.2.1.0.97.4-ENG Hotfix
14.1.2.1.0.34.4-ENG Hotfix
14.1.2.1.0.16.4-ENG Hotfix
14.1.2.1.0.14.4-ENG Hotfix
14.1.2.1.0.46.4-ENG Hotfix
14.1.2.0.32.37-ENG Hotfix
14.1.2.0.18.37-ENG Hotfix
14.1.2.0.11.37-ENG Hotfix
14.1.0.6.0.70.9-ENG Hotfix
14.1.0.6.0.68.9-ENG Hotfix
14.1.0.6.0.14.9-ENG Hotfix
14.1.0.6.0.11.9-ENG Hotfix
14.1.0.5.0.40.5-ENG Hotfix
14.1.0.5.0.36.5-ENG Hotfix
14.1.0.5.0.15.5-ENG Hotfix
14.1.0.3.0.99.6-ENG Hotfix
14.1.0.3.0.97.6-ENG Hotfix
14.1.0.3.0.79.6-ENG Hotfix
15.0.1.0.48.11-ENG Hotfix
15.0.1.0.33.11-ENG Hotfix
13.1.1.5
14.0.1
14.0.0
14.1.2
14.1.1
14.1.0
13.1.1
14.0.1.1
14.1.2.1
13.1.3
11.6.4
13.1.0.8
13.0.0 HF1
12.1.3.2
12.1.3.4
13.1.0.6
12.1.3.1
13.0.1
11.5.6
11.5.5
11.5.4 HF4
11.6.3
12.1.3
13.1.0.3
13.1.0.2
13.1.0.1
13.1.0
11.6.0
11.5.4
11.5.3
11.5.2
11.5.1
11.5.0
11.6.1
12.0.1
11.6.2
11.4.0
11.2.1
12.1.2 HF1
13.0.0
12.0.0 HF4
12.0.0 HF3
12.0.0 HF1
12.1.2
12.0.0
12.1.1
12.1.0
Vulnerabilities (53)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU94710 - Resource Management Errors CVE-2024-1737 |
CWE-399 | Medium | - | 24.07.2024 |
SB2024072415 SB2024072417 SB2024072418 and 73 more |
||
| #VU86230 - Resource exhaustion CVE-2023-52425 |
CWE-400 | Medium | - | 07.02.2024 |
SB2024020750 SB2024020754 SB2024020765 and 118 more |
||
| #VU80564 - Improper Restriction of XML External Entity Reference ('XXE') CVE-2022-48565 |
CWE-611 | Medium | 17.5.1 | 08.09.2023 |
SB2023090833 SB2023090836 SB2023101232 and 24 more |
||
| #VU71817 - NULL Pointer Dereference CVE-2023-22839 |
CWE-476 | Medium | 14.1.5.3, 15.1.8.1, 16.1.3.3, 17.0.0.2 | 06.02.2023 |
SB2023020633 |
||
| #VU67532 - Use After Free CVE-2022-40674 |
CWE-416 | High | - | 21.09.2022 |
SB2022092118 SB2022092119 SB2022092317 and 111 more |
||
| #VU56088 - Improper input validation CVE-2021-23045 |
CWE-20 | Low | 13.1.4.1, 14.1.4.3, 15.1.3.1, 16.0.1.2, 16.1.0 | 25.08.2021 |
SB2021082512 |
||
| #VU52749 - Loop with Unreachable Exit Condition ('Infinite Loop') CVE-2021-23009 |
CWE-835 | Medium | 15.1.3, 16.0.1.1 | 29.04.2021 |
SB2021042917 |
||
| #VU51494 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2021-22988 |
CWE-78 | High | 11.6.5.3, 12.1.5.3, 13.1.3.6, 14.1.4, 15.1.2.1, 16.0.1.1 | 16.03.2021 |
SB2021031607 |
||
| #VU51493 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2021-22987 |
CWE-78 | High | 11.6.5.3, 12.1.5.3, 13.1.3.6, 14.1.4, 15.1.2.1, 16.0.1.1 | 16.03.2021 |
SB2021031606 |
||
| #VU51491 - Resource Management Errors CVE-2021-23003 |
CWE-399 | Medium | 11.6.5.3, 12.1.5.3, 13.1.3.6, 14.1.3.1, 15.1.2, 16.0.1.1 | 16.03.2021 |
SB2021031604 |
||
| #VU51423 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2021-22994 |
CWE-79 | Medium | 11.6.5.3, 12.1.5.3, 13.1.3.6, 14.1.4, 15.1.2.1, 16.0.1.1 | 11.03.2021 |
SB2021031121 |
||
| #VU51422 - Memory corruption CVE-2021-22991 |
CWE-119 | High | 12.1.5.3, 13.1.3.6, 14.1.4, 15.1.2.1, 16.0.1.1 | 11.03.2021 |
SB2021031120 |
||
| #VU51419 - Resource exhaustion CVE-2021-22998 |
CWE-400 | Medium | 11.6.5.3, 12.1.5.3, 13.1.3.6, 14.1.4, 15.1.2.1, 16.0.1.1 | 11.03.2021 |
SB2021031117 |
||
| #VU51418 - Resource exhaustion CVE-2021-23004 |
CWE-400 | Medium | 11.6.5.3, 12.1.5.3, 13.1.3.6, 14.1.3.1, 15.1.2, 16.0.1.1 | 11.03.2021 |
SB2021031116 |
||
| #VU51391 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2021-22986 |
CWE-78 | High | 12.1.5.3, 13.1.3.6, 14.1.4, 15.1.2.1, 16.0.1.1 | 11.03.2021 |
SB2021031102 |
||
| #VU51269 - Exposure of sensitive information to an unauthorized actor CVE-2019-18282 |
CWE-200 | Medium | - | 09.03.2021 |
SB2020011633 SB2021030902 SB2021030903 and 5 more |
||
| #VU50329 - Out-of-bounds read CVE-2019-25013 |
CWE-125 | Low | - | 04.01.2021 |
SB2021020413 SB2021020414 SB2021020710 and 36 more |
||
| #VU47106 - Out-of-bounds read CVE-2020-14314 |
CWE-125 | Low | - | 15.09.2020 |
SB2020092605 SB2020090877 SB2021031201 and 14 more |
||
| #VU15794 - Command injection CVE-2018-1000802 |
CWE-77 | Low | 17.5.1 | 10.11.2018 |
SB2018111109 SB2018092706 SB2018100603 and 5 more |
||
| #VU7241 - Integer overflow CVE-2016-9063 |
CWE-190 | Low | 17.5.1 | 25.06.2017 |
SB2017062501 SB2017062610 SB2017092304 and 7 more |
Showing elements 1 - 20 out of 53