Vulnerability Details CVE-2021-23006
On all 7.x and 6.x versions (fixed in 8.0.0), undisclosed BIG-IQ pages have a reflected cross-site scripting vulnerability. Note: Software versions which have reached End of Software Development (EoSD) are not evaluated.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 56.8%
CVSS Severity
CVSS v3 Score 6.1
CVSS v2 Score 4.3
Products affected by CVE-2021-23006
-
cpe:2.3:a:f5:big-iq_centralized_management:6.0.0
-
cpe:2.3:a:f5:big-iq_centralized_management:6.0.1
-
cpe:2.3:a:f5:big-iq_centralized_management:6.1.0
-
cpe:2.3:a:f5:big-iq_centralized_management:7.0.0
-
cpe:2.3:a:f5:big-iq_centralized_management:7.1.0
-
cpe:2.3:a:f5:big-iq_centralized_management:7.1.0.1