CVE-2026-40631
F5 BIG-IP, big-ip access policy manager, big-ip advanced firewall manager 취약점
An authenticated attacker with the Resource Administrator or Administrator role can modify configuration objects through iControl SOAP resulting in privilege escalation. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
- 대응 우선순위
- 점검
- CVSS
- 8.5
- EPSS
- 0.25% 백분위 16.2% · 2026.08.04 기준
- CISA KEV
- 미등록
- 조치 기한
- -
- 공개일
- 2026.05.14