AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2016-3686

MEDIUM · CVSS 5.9 EPSS 1.53%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2016-04-13 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2016-3686
Severity
MEDIUM
CVSS
5.9
EPSS
1.53%
F5 BIG-IP

Original NVD Description

The Single Sign-On (SSO) feature in F5 BIG-IP APM 11.x before 11.6.0 HF6 and BIG-IP Edge Gateway 11.0.0 through 11.3.0 might allow remote attackers to obtain sensitive SessionId information by leveraging access to the Location HTTP header in a redirect.