vulnerability

F5 Networks: CVE-2024-22389: K32544615: BIG-IP iControl REST API vulnerability CVE-2024-22389

Severity
8
CVSS
(AV:N/AC:L/Au:M/C:C/I:C/A:C)
Published
Feb 14, 2024
Added
Mar 8, 2024
Modified
Aug 11, 2025

Description

When BIG-IP is deployed in high availability (HA) and an iControl REST API token is updated, the change does not sync to the peer device.

Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated

Solution

f5-big-ip-upgrade-latest
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.