Skip to content
COOEY

FAIL › dossier

BIG-IP Configuration Utility

PRODUCT

· dossier confidence 50%

BIG-IP Configuration Utility exhibits critical security vulnerabilities, highlighting the need for enhanced security measures.

PROFILE
CategorySoftwareWhat they doA utility for managing F5 BIG-IP devices.
SECURITY POSTURE

Needs improvement; recent critical vulnerabilities indicate a lack of robust security practices.

Notable failures
  • CVE-2023-46747
  • CVE-2023-46748
Patterns: unpatched RCE vulnerabilities
FAILURE HISTORY · 2
DATEEVENTSEVSUMMARY
2023-10-31 CVE-2023-46747 critical An unauthenticated attacker can bypass BIG-IP Configuration Utility authentication to execute system commands.
2023-10-31 CVE-2023-46748 high F5 BIG-IP Config Utility SQL Injection Vulnerability
Open questions: What steps has F5 taken to address these vulnerabilities? · Is there a timeline for patching these vulnerabilities?
DOSSIER · dex-RAG synthesis · grounded in our own collection + trusted sourcesbuilt 2026-08-05 03:45:04.756121+00:00