
Cloud Vulnerability DB
A community-led vulnerabilities database
On F5 BIG-IP 13.1.x versions prior to 13.1.5, and all versions of 12.1.x and 11.6.x, when multiple route domains are configured, undisclosed requests to big3d can cause an increase in CPU resource utilization (MITRE CVE).
The vulnerability has been assigned a CVSS v3.1 Base Score of 5.3 (MEDIUM) with the vector string CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L. The vulnerability affects the big3d component when handling certain requests in environments with multiple route domains configured (NVD).
When exploited, this vulnerability can lead to increased CPU resource utilization on affected BIG-IP systems, potentially impacting system performance (MITRE CVE).
Users should upgrade to BIG-IP version 13.1.5 or later. Systems running versions 12.1.x and 11.6.x should be upgraded to a supported version as these versions have reached End of Technical Support (EoTS) (MITRE CVE).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."