CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.5. It affects BIG-IP.
CVE
CVE-2023-22422
Severity
HIGH
CVSS
7.5
EPSS
0.63%
BIG-IP
Original NVD Description
On BIG-IP versions 17.0.x before 17.0.0.2 and 16.1.x before 16.1.3.3, when a HTTP profile with the non-default Enforcement options of Enforce HTTP Compliance and Unknown Methods: Reject are configured on a virtual server, undisclosed requests can cause the Traffic Management Microkernel (TMM) to terminate. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
Related CVEs
Other vulnerabilities affecting the same vendor(s)