FAIL › dossier
BIG-IP Configuration Utility
PRODUCT· dossier confidence 50%
BIG-IP Configuration Utility exhibits critical security vulnerabilities, highlighting the need for enhanced security measures.
PROFILE
CategorySoftwareWhat they doA utility for managing F5 BIG-IP devices.
SECURITY POSTURE
Needs improvement; recent critical vulnerabilities indicate a lack of robust security practices.
Notable failures
- CVE-2023-46747
- CVE-2023-46748
Patterns: unpatched RCE vulnerabilities
FAILURE HISTORY · 2
| DATE | EVENT | SEV | SUMMARY |
|---|---|---|---|
| 2023-10-31 | CVE-2023-46747 | critical | An unauthenticated attacker can bypass BIG-IP Configuration Utility authentication to execute system commands. |
| 2023-10-31 | CVE-2023-46748 | high | F5 BIG-IP Config Utility SQL Injection Vulnerability |
Open questions: What steps has F5 taken to address these vulnerabilities? · Is there a timeline for patching these vulnerabilities?
DOSSIER · dex-RAG synthesis · grounded in our own collection + trusted sourcesbuilt 2026-08-05 03:45:04.756121+00:00