PT-2025-42327 · F5 · F5 Big-Ip

Published

2025-10-15

·

Updated

2026-02-04

·

CVE-2025-53868

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions F5 BIG-IP versions (affected versions not specified)
Description A privileged, authenticated attacker with access to SCP and SFTP may bypass Appliance mode restrictions using undisclosed commands when the software is running in Appliance mode. This bypass can expose sensitive features.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

OS Command Injection

Weakness Enumeration

Related Identifiers

CVE-2025-53868

Affected Products

F5 Big-Ip