CVE-2026-20916
F5 BIG-IQ, big-iq centralized management
An authenticated iControl REST user with low privileges can create or modify arbitrary files through an undisclosed iControl REST endpoint on the BIG-IQ system. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
- CVSS
- 7.2
- EPSS
- 0.37% 29.3% percentile
- CISA KEV
- Not listed
- Published
- 2026.05.14