Sunday, March 14, 2021

F5 Networks: K66851119 (CVE-2021-22994): F5 TMUI XSS vulnerability

Details for this vulnerability have not been published by NIST at this point. Descriptions from software vendor advisories for this issue are provided below.From K66851119:An attacker may exploit this vulnerability using a crafted URL to a reflected cross-site scripting (XSS) vulnerability in an undisclosed page of the Configuration utility, leading to a complete compromise of the BIG-IP system if the victim user is granted the admin role.
  • f5-big-ip-upgrade-latest

  • References
  • CVE-2021-22994


    Copyright © 2020 Cyber Details - Vulnerability Database™

    Thanks for everything Templateism - You should have written the code a little more complicated