High severity8.7NVD Advisory· Published May 13, 2026· Updated Jun 23, 2026
CVE-2026-42406
CVE-2026-42406
Description
A vulnerability exists in BIG-IP and BIG-IQ systems where a highly privileged, authenticated attacker with at least the Certificate Manager role can modify configuration objects that allow running arbitrary commands. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
Affected products
2Patches
Vulnerability mechanics
References
1- my.f5.com/manage/s/article/K000160971nvdMitigationVendor Advisory
News mentions
0No linked articles in our index yet.