High severity7.2NVD Advisory· Published May 10, 2021· Updated Jun 17, 2026
CVE-2021-23015
CVE-2021-23015
Description
On BIG-IP 15.1.x before 15.1.3, 14.1.x before 14.1.4.2, 13.1.0.8 through 13.1.3.6, and all versions of 16.0.x, when running in Appliance Mode, an authenticated user assigned the 'Administrator' role may be able to bypass Appliance Mode restrictions utilizing undisclosed iControl REST endpoints. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
Affected products
1Patches
Vulnerability mechanics
References
1- support.f5.com/csp/article/K74151369nvdVendor Advisory
News mentions
0No linked articles in our index yet.