Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2025-53521

When a BIG-IP APM access policy is configured on a virtual server, specific malicious traffic can lead to Remote Code Execution (RCE).   Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.062
EPSS Ranking 90.9%
CVSS Severity
CVSS v3 Score 9.8
Proposed Action
F5 BIG-IP APM contains a stack-based buffer overflow vulnerability that could allow a threat actor to achieve remote code execution.
Ransomware Campaign
Unknown
Products affected by CVE-2025-53521


Contact Us

Shodan ® - All rights reserved