Unrated severityCISA KEVNVD Advisory· Published Oct 26, 2023· Updated Oct 21, 2025
BIG-IP Configuration utility unauthenticated remote code execution vulnerability
CVE-2023-46747
Description
Undisclosed requests may bypass configuration utility authentication, allowing an attacker with network access to the BIG-IP system through the management port and/or self IP addresses to execute arbitrary system commands. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated
Affected products
1- F5/BIG-IPv5Range: 17.1.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3News mentions
0No linked articles in our index yet.