Ir al contenido
CodeAuditAgent

CVE-2026-40631

An authenticated attacker with the Resource Administrator or Administrator role can modify configuration objects through iControl SOAP resulting in privilege escalation. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

Debilidad

An authenticated attacker with the Resource Administrator or Administrator role can modify configuration objects through iControl SOAP resulting in privilege escalation. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

Productos afectados

  • f5 big-ip_access_policy_manager
  • f5 big-ip_advanced_firewall_manager
  • f5 big-ip_advanced_web_application_firewall
  • f5 big-ip_analytics
  • f5 big-ip_application_acceleration_manager
  • f5 big-ip_application_security_manager
  • f5 big-ip_application_visibility_and_reporting
  • f5 big-ip_automation_toolchain

Referencias

Encuentra el fallo antes que un atacante.

Inicia sesión con GitHub y ejecuta tu primera auditoría en menos de un minuto. El plan gratuito no requiere tarjeta de crédito.