CVE-2026-41225
F5 BIG-IP, big-ip access policy manager, big-ip advanced firewall manager 취약점
A vulnerability exists in iControl REST where a highly privileged, authenticated attacker with at least the Manager role can create configuration objects that allow running arbitrary commands. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
- 대응 우선순위
- 점검
- CVSS
- 8.6
- EPSS
- 0.27% 백분위 19.3% · 2026.08.04 기준
- CISA KEV
- 미등록
- 조치 기한
- -
- 공개일
- 2026.05.14