Skip to main content

Vendor/product archive

f5 / firepass CVEs

Beta · best-effort

10 CVEs tagged to f5 / firepass3 Critical, 3 High, 4 Medium, 0 Low, 0 Unrated.

CVE-2012-2053

Published Apr 5, 2012

The sudoers file in the Linux system configuration in F5 FirePass 6.0.0 through 6.1.0 and 7.0.0 does not require a password for executing commands as root, which allows local user…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2012-1777

Published Apr 5, 2012

SQL injection vulnerability in my.activation.php3 in F5 FirePass 6.0.0 through 6.1.0 and 7.0.0 allows remote attackers to execute arbitrary SQL commands via the state parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-0187

Published Jan 12, 2007

F5 FirePass 5.4 through 5.5.2 and 6.0 allows remote attackers to access restricted URLs via (1) a trailing null byte, (2) multiple leading slashes, (3) Unicode encoding, (4) URL-e…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-0188

Published Jan 12, 2007

F5 FirePass 5.4 through 5.5.1 does not properly enforce host access restrictions when a client uses a single integer (dword) representation of an IP address ("dotless IP address")…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-0195

Published Jan 12, 2007

my.activation.php3 in F5 FirePass 5.4 through 5.5.1 and 6.0 displays different error messages for failed login attempts with a valid username than for those with an invalid userna…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-10 of 10 CVEsPage 1 of 1