CVE-2016-5022

Severity
9.8CRITICAL
EPSS
3.1%
top 13.25%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 7
Latest updateMay 14

Description

F5 BIG-IP LTM, Analytics, APM, ASM, and Link Controller 11.2.x before 11.2.1 HF16, 11.3.x, 11.4.x, 11.5.x before 11.5.4 HF2, 11.6.x before 11.6.1 HF1, and 12.x before 12.0.0 HF3; BIG-IP AAM, AFM, and PEM 11.4.x, 11.5.x before 11.5.4 HF2, 11.6.x before 11.6.1 HF1, and 12.x before 12.0.0 HF3; BIG-IP DNS 12.x before 12.0.0 HF3; BIG-IP Edge Gateway, WebAccelerator, and WOM 11.2.x before 11.2.1 HF16 and 11.3.0; BIG-IP GTM 11.2.x before 11.2.1 HF16, 11.3.x, 11.4.x, 11.5.x before 11.5.4 HF2, and 11.6.x

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages22 packages

🔴Vulnerability Details

2
GHSA
GHSA-cj4v-hxwj-9f72: F5 BIG-IP LTM, Analytics, APM, ASM, and Link Controller 112022-05-14
CVEList
CVE-2016-5022: F5 BIG-IP LTM, Analytics, APM, ASM, and Link Controller 112016-09-07
CVE-2016-5022 (CRITICAL CVSS 9.8) | F5 BIG-IP LTM | cvebase.io