CVE-2026-40698High· 8.7▾ TwilightA vulnerability exists in BIG-IP and BIG-IQ systems where a highly privileged, authenticated attacker with at least the Resource Administrator role can create SNMP configuration objects through iControl REST or the TMOS shell (tmsh) resu…
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 47.8 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Jul 4.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.2%
A vulnerability exists in BIG-IP and BIG-IQ systems where a highly privileged, authenticated attacker with at least the Resource Administrator role can create SNMP configuration objects through iControl REST or the TMOS shell (tmsh) resulting in privilege escalation. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
big-ip_access_policy_manager >= 17.1.0, <= 17.1.3big-ip_access_policy_manager >= 17.5.0, <= 17.5.1big-ip_advanced_firewall_manager >= 17.1.0, <= 17.1.3big-ip_advanced_firewall_manager >= 17.5.0, <= 17.5.1big-ip_advanced_web_application_firewall >= 17.1.0, <= 17.1.3big-ip_advanced_web_application_firewall >= 17.5.0, <= 17.5.1big-ip_analytics >= 17.1.0, <= 17.1.3big-ip_analytics >= 17.5.0, <= 17.5.1big-ip_application_acceleration_manager >= 17.1.0, <= 17.1.3big-ip_application_acceleration_manager >= 17.5.0, <= 17.5.1big-ip_application_security_manager >= 17.1.0, <= 17.1.3big-ip_application_security_manager >= 17.5.0, <= 17.5.1big-ip_application_visibility_and_reporting >= 17.1.0, <= 17.1.3big-ip_application_visibility_and_reporting >= 17.5.0, <= 17.5.1big-ip_automation_toolchain >= 17.1.0, <= 17.1.3big-ip_automation_toolchain >= 17.5.0, <= 17.5.1big-ip_carrier-grade_nat >= 17.1.0, <= 17.1.3big-ip_carrier-grade_nat >= 17.5.0, <= 17.5.1big-ip_container_ingress_services >= 17.1.0, <= 17.1.3big-ip_container_ingress_services >= 17.5.0, <= 17.5.1big-ip_ddos_hybrid_defender >= 17.1.0, <= 17.1.3big-ip_ddos_hybrid_defender >= 17.5.0, <= 17.5.1big-ip_domain_name_system >= 17.1.0, <= 17.1.3big-ip_domain_name_system >= 17.5.0, <= 17.5.1big-ip_edge_gateway >= 17.1.0, <= 17.1.3big-ip_edge_gateway >= 17.5.0, <= 17.5.1big-ip_fraud_protection_service >= 17.1.0, <= 17.1.3big-ip_fraud_protection_service >= 17.5.0, <= 17.5.1big-ip_global_traffic_manager >= 17.1.0, <= 17.1.3big-ip_global_traffic_manager >= 17.5.0, <= 17.5.1big-ip_link_controller >= 17.1.0, <= 17.1.3big-ip_link_controller >= 17.5.0, <= 17.5.1big-ip_local_traffic_manager >= 17.1.0, <= 17.1.3big-ip_local_traffic_manager >= 17.5.0, <= 17.5.1big-ip_policy_enforcement_manager >= 17.1.0, <= 17.1.3big-ip_policy_enforcement_manager >= 17.5.0, <= 17.5.1big-ip_ssl_orchestrator >= 17.1.0, <= 17.1.3big-ip_ssl_orchestrator >= 17.5.0, <= 17.5.1big-ip_webaccelerator >= 17.1.0, <= 17.1.3big-ip_webaccelerator >= 17.5.0, <= 17.5.1big-ip_websafe >= 17.1.0, <= 17.1.3big-ip_websafe >= 17.5.0, <= 17.5.1big-ip_access_policy_manager >= 16.1.0, <= 16.1.6big-ip_advanced_firewall_manager >= 16.1.0, <= 16.1.6big-ip_advanced_web_application_firewall >= 16.1.0, <= 16.1.6big-ip_analytics >= 16.1.0, <= 16.1.6big-ip_application_acceleration_manager >= 16.1.0, <= 16.1.6big-ip_application_security_manager >= 16.1.0, <= 16.1.6big-ip_application_visibility_and_reporting >= 16.1.0, <= 16.1.6big-ip_automation_toolchain >= 16.1.0, <= 16.1.6big-ip_carrier-grade_nat >= 16.1.0, <= 16.1.6big-ip_container_ingress_services >= 16.1.0, <= 16.1.6big-ip_ddos_hybrid_defender >= 16.1.0, <= 16.1.6big-ip_domain_name_system >= 16.1.0, <= 16.1.6big-ip_edge_gateway >= 16.1.0, <= 16.1.6big-ip_fraud_protection_service >= 16.1.0, <= 16.1.6big-ip_global_traffic_manager >= 16.1.0, <= 16.1.6big-ip_link_controller >= 16.1.0, <= 16.1.6big-ip_local_traffic_manager >= 16.1.0, <= 16.1.6big-ip_policy_enforcement_manager >= 16.1.0, <= 16.1.6big-ip_ssl_orchestrator >= 16.1.0, <= 16.1.6big-ip_webaccelerator >= 16.1.0, <= 16.1.6big-ip_websafe >= 16.1.0, <= 16.1.6big-ip_access_policy_manager = 21.0.0big-ip_advanced_firewall_manager = 21.0.0big-ip_advanced_web_application_firewall = 21.0.0big-ip_analytics = 21.0.0big-ip_application_acceleration_manager = 21.0.0big-ip_application_security_manager = 21.0.0big-ip_application_visibility_and_reporting = 21.0.0big-ip_automation_toolchain = 21.0.0big-ip_carrier-grade_nat = 21.0.0big-ip_container_ingress_services = 21.0.0big-ip_ddos_hybrid_defender = 21.0.0big-ip_domain_name_system = 21.0.0big-ip_edge_gateway = 21.0.0big-ip_fraud_protection_service = 21.0.0big-ip_global_traffic_manager = 21.0.0big-ip_link_controller = 21.0.0big-ip_local_traffic_manager = 21.0.0big-ip_policy_enforcement_manager = 21.0.0big-ip_ssl_orchestrator = 21.0.0big-ip_webaccelerator = 21.0.0big-ip_websafe = 21.0.0big-iq_centralized_management >= 8.4.0, <= 8.4.1Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-63020Low· 3.1A vulnerability exists in an undisclosed BIG-IP Configuration utility page that may allow an attacker to spoof error messages Impact: An attacker may trick authenticated BIG-IP users into accessing malicious links and reflect a …
CVE-2025-13799Medium· 6.3A vulnerability has been found in ADSLR NBR1005GPEV2 250814-r037c
CVE-2025-13797Medium· 6.3A vulnerability was detected in ADSLR B-QE2W401 250814-r037c
CVE-2019-25029Critical· 9.8In Versa Director, the command injection is an attack in which the goal is execution of arbitrary commands on the host operating system via a vulnerable application
CVE-2018-19949Critical· 9.8If exploited, this command injection vulnerability could allow remote attackers to run arbitrary commands
CVE-2024-55956Critical· 9.8In Cleo Harmony before 5.8.0.24, VLTrader before 5.8.0.24, and LexiCom before 5.8.0.24, an unauthenticated user can import and execute arbitrary Bash or PowerShell commands on the host system by leveraging the default settings of the Aut…