Resource Consumption Vulnerability in F5 BIG-IP APM by F5 Networks
CVE-2022-27181
5.3MEDIUM
Summary
A resource consumption vulnerability exists in F5 BIG-IP APM when configured on a virtual server with an associated access profile using APM AAA NTLM Auth. Certain undisclosed requests can lead to increased internal resource utilization, potentially affecting the performance of the affected systems.
Affected Version(s)
BIG-IP APM 12.1.x
BIG-IP APM 11.6.x
BIG-IP APM 16.1.x < 16.1.2.2
References
CVSS V3.1
Score:
5.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved