Security Advisory

CVE-2023-46748

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-10-26 20:05:04
Last updated 2025-10-21 23:05:33
Assigner f5
State PUBLISHED

Description

An authenticated SQL injection vulnerability exists in the BIG-IP Configuration utility which may allow an authenticated attacker with network access to the Configuration utility through the BIG-IP management port and/or self IP addresses to execute arbitrary system commands.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated