CVE-2008-6474

Severity CVSS v4.0:
Pending analysis
Type:
CWE-94 Code Injection
Publication date:
16/03/2009
Last modified:
09/04/2025

Description

The management interface in F5 BIG-IP 9.4.3 allows remote authenticated users with Resource Manager privileges to inject arbitrary Perl code via unspecified configuration settings related to Perl EP3 with templates, probably triggering static code injection.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:f5:tmos:9.4.3:*:*:*:*:*:*:*