Total vulnerabilities in the database
In versions 16.0.0-16.0.0.1, 15.1.0-15.1.0.5, 14.1.0-14.1.3, 13.1.0-13.1.3.4, and 12.1.0-12.1.5.2, a reflected cross-site scripting (XSS) vulnerability exists in the resource information page for authenticated users when a full webtop is configured on the BIG-IP APM system.
Software | From | Fixed in |
---|---|---|
f5 / big-ip_access_policy_manager | 12.1.0 | 12.1.5.x |
f5 / big-ip_access_policy_manager | 15.0.0 | 15.1.1 |
f5 / big-ip_access_policy_manager | 16.0.0 | 16.0.1 |
f5 / big-ip_access_policy_manager | 13.1.0 | 13.1.3.5 |
f5 / big-ip_access_policy_manager | 14.1.0 | 14.1.3.1 |