File Modification Vulnerability in BIG-IQ System by F5 Networks
CVE-2026-20916
7.2HIGH
What is CVE-2026-20916?
An authenticated user with low privileges within the iControl REST framework can exploit a security flaw to create or alter arbitrary files on the BIG-IQ system. This vulnerability arises from an undisclosed endpoint within the iControl REST interface, enabling limited users to gain unintended access to the file system.
Affected Version(s)
BIG-IQ 8.4.0 < 8.4.1