Skip to main content

BIG-IP and BIG-IQ Centralized Management vulnerabilities

1 published alerts for F5 BIG-IP and BIG-IQ Centralized Management.

Actively exploited (KEV)Ransomware

CVE-2021-22986

F5 BIG-IP and BIG-IQ Centralized Management iControl REST Remote Code Execution Vulnerability

F5 BIG-IP and BIG-IQ Centralized Management is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2021-22986). F5 BIG-IP and BIG-IQ Centralized Management contain a remote code execution vulnerability in the iControl REST interface that allows unauthenticated attackers with network access to execute system commands, create or delete files, and disable services. CISA remediation due date: 2021-11-17. If you need help checking exposure, call (864) 335-9223.