f5 big-iq-centralized-management CVE-2022-23009 is a vulnerability in F5 Networks Big Iq Centralized Management
Published on January 25, 2022

On BIG-IQ Centralized Management 8.x before 8.1.0, an authenticated administrative role user on a BIG-IQ managed BIG-IP device can access other BIG-IP devices managed by the same BIG-IQ system. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

NVD

Weakness Type

What is an AuthZ Vulnerability?

The software performs an authorization check when an actor attempts to access a resource or perform an action, but it does not correctly perform the check. This allows attackers to bypass intended access restrictions.

CVE-2022-23009 has been classified to as an AuthZ vulnerability or weakness.


Products Associated with CVE-2022-23009

Want to know whenever a new CVE is published for F5 Networks Big Iq Centralized Management? stack.watch will email you.

 

Exploit Probability

EPSS
0.31%
Percentile
53.99%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.