CVE-2024-47139

Severity CVSS v4.0:
MEDIUM
Type:
Unavailable / Other
Publication date:
16/10/2024
Last modified:
06/08/2025

Description

A stored cross-site scripting (XSS) vulnerability exists in an undisclosed page of the BIG-IQ Configuration utility that allows an attacker with the Administrator role to run JavaScript in the context of the currently logged-in user.<br /> <br />  <br /> <br /> <br /> Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:f5:big-iq_centralized_management:8.2.0:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools