CVE-2026-41217
F5 BIG-IP, big-ip access policy manager, big-ip advanced firewall manager
A vulnerability exists in an undisclosed BIG-IP TMOS Shell (tmsh) command that may allow an authenticated attacker with resource administrator or administrator role to execute arbitrary system commands with higher privileges. In Appliance mode deployments, a successful exploit can allow the attacker to cross a security boundary. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
- CVSS
- 8.3
- EPSS
- 0.11% 1.34% percentile
- CISA KEV
- Not listed
- Published
- 2026.05.14