← Back to CVE search

CVE-2026-41954

F5 BIG-IP

Description

Sensitive information disclosure vulnerability exists in the undisclosed iControl REST endpoint and TMOS Shell (tmsh) command which may allow an authenticated attacker with resource administrator role privileges to view sensitive information. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVSS 4.9EPSS 0.294%Risk 0.5
View source
Published
2026-05-13 16:16:45
Affected versions
unknown
Type
Core software
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N