Security Advisory

CVE-2021-23015

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-05-10 14:40:14
Last updated 2024-08-03 18:58:26
Assigner f5
State PUBLISHED

Description

On BIG-IP 15.1.x before 15.1.3, 14.1.x before 14.1.4.2, 13.1.0.8 through 13.1.3.6, and all versions of 16.0.x, when running in Appliance Mode, an authenticated user assigned the Administrator role may be able to bypass Appliance Mode restrictions utilizing undisclosed iControl REST endpoints. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.