CNNVD-202510-2155 Information

CNNVD ID

CNNVD-202510-2155

CVE-2025-54755

  • CNNVD Published: 2025-10-15

Description (Chinese)

F5 BIG-IP是美国F5公司的一款集成了网络流量管理、应用程序安全管理、负载均衡等功能的应用交付平台。 F5 BIG-IP存在路径遍历漏洞,该漏洞源于目录遍历漏洞,可能导致经过身份验证的攻击者访问超出预期限制的文件。

Description (English)

F5 BIG-IP is an application delivery platform for network traffic management, application security management, load balance, and so on. F5 BIG-IP has a loophole in its path, which stems from a loophole in its catalogue, which could lead to an identified assailant accessing documents beyond the expected limit.

Hazard Level

High

Vulnerability Type

路径遍历

Affected Vendor

F5

Published

2025-10-15

Last Modified

2026-02-24

References

https://my.f5.com/manage/s/article/K000156801 https://vigilance.fr/vulnerability/BIG-IP-directory-traversal-via-Configuration-Utility-2-48487

Patch

https://my.f5.com/manage/s/article/K000156801

Share on: