AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2021-23028

HIGH · CVSS 7.5 EPSS 0.93%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2021-09-14 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2021-23028
Severity
HIGH
CVSS
7.5
EPSS
0.93%
F5 BIG-IP

Original NVD Description

On version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3.1, 14.1.x before 14.1.4.2, and 13.1.x before 13.1.4, when JSON content profiles are configured for URLs as part of an F5 Advanced Web Application Firewall (WAF)/BIG-IP ASM security policy and applied to a virtual server, undisclosed requests may cause the BIG-IP ASM bd process to terminate. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.