← voltar
CVE-2025-23415

BIG-IP APM Endpoint Inspection vulnerability

CVSS 2.3 LOWEPSS 0.1%CWE-345
An insufficient verification of data authenticity vulnerability exists in BIG-IP APM Access Policy endpoint inspection that may allow an attacker to bypass endpoint inspection checks for VPN connection initiated thru BIG-IP APM browser network access VPN client for Windows, macOS and Linux. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N
Produtos afetados
F5 · BIG-IP

Quer saber se a sua infraestrutura está exposta a isto?

Falar com a TrueHacking →