CVE-2018-15319 vulnerability in F5 Networks Products
Published on October 31, 2018
On BIG-IP 14.0.0-14.0.0.2, 13.0.0-13.1.1.1, or 12.1.0-12.1.3.6, malicious requests made to virtual servers with an HTTP profile can cause the TMM to restart. The issue is exposed with the non-default "normalize URI" configuration options used in iRules and/or BIG-IP LTM policies.
Products Associated with CVE-2018-15319
Want to know whenever a new CVE is published for F5 Networks products? stack.watch will email you.
Affected Versions
F5 Networks, Inc. BIG-IP (LTM, AAM, AFM, Analytics, APM, ASM, DNS, Edge Gateway, FPS, GTM, Link Controller, PEM, WebAccelerator) Version 14.0.0-14.0.0.2, 13.0.0-13.1.1.1, 12.1.0-12.1.3.6 is affected by CVE-2018-15319Exploit Probability
EPSS
0.59%
Percentile
68.76%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.