Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-10092 | On BIG-IP version 16.0.x before 16.0.1.1, 15.1.x before 15.1.2, 14.1.x before 14.1.3.1, and 13.1.x before 13.1.3.6 and all versions of BIG-IQ 7.x and 6.x, an authenticated attacker with access to iControl REST over the control plane may be able to take advantage of a race condition to execute commands with an elevated privilege level. This vulnerability is due to an incomplete fix for CVE-2017-6167. Note: Software versions which have reached End of Software Development (EoSD) are not evaluated. |
| Link | Providers |
|---|---|
| https://support.f5.com/csp/article/K68652018 |
|
No history.
Subscriptions
Status: PUBLISHED
Assigner: f5
Published:
Updated: 2024-08-03T18:58:25.916Z
Reserved: 2021-01-06T00:00:00.000Z
Link: CVE-2021-22974
No data.
Status : Modified
Published: 2021-02-12T17:15:14.403
Modified: 2026-06-17T03:38:08.080
Link: CVE-2021-22974
No data.
OpenCVE Enrichment
No data.
-
CWE-362
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
EUVD