S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
critical·Product Based Web Vulnerabilities·Updated Dec 16, 2023

CVE-2020-5902 Scanner

Detects 'Remote Code Execution (RCE)' vulnerability in F5 BIG-IP affects v. 15.0.0-15.1.0.3, 14.1.0-14.1.2.5, 13.1.0-13.1.3.3, 12.1.0-12.1.5.1, and 11.6.1-11.6.5.1.

Est. Time~7 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
3.3k
Times Used
continuous scan runs
4.7k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
🔴
CISA Known Exploited Vulnerability
This CVE is actively exploited in the wild. CISA mandates federal agencies to patch immediately.
CVECVE-2020-5902
9.8
CVSScritical
Exploitable remotely over the internet · no authentication required.

In BIG-IP versions 15.0.0-15.1.0.3, 14.1.0-14.1.2.5, 13.1.0-13.1.3.3, 12.1.0-12.1.5.1, and 11.6.1-11.6.5.1, the Traffic Management User Interface (TMUI), also referred to as the Configuration utility, has a Remote Code Execution (RCE) vulnerability in undisclosed pages.

Attack Vector
Network
Privileges Req.
None
User Interaction
None
Affected
BIG-IPby n/a
15.0.0-15.1.0.3, 14.1.0-14.1.2.5, 13.1.0-13.1.3.3, 12.1.0-12.1.5.1, 11.6.1-11.6.5.1
Updated Aug 21, 2026View on NVD →
Detail

The BIG-IP software is an application delivery controller that provides high availability, performance, and security to applications across a network. It is used by organizations to optimize the flow of traffic between servers, data centers, and cloud services. The BIG-IP software offers advanced features such as load balancing, SSL/TLS offloading, and application firewalling. It is a critical component for large-scale deployments and is widely adopted by enterprises.

The CVE-2020-5902 vulnerability detected in this product is a Remote Code Execution (RCE) flaw in the Traffic Management User Interface (TMUI) of BIG-IP versions 11.6.1-11.6.5.1, 12.1.0-12.1.5.1, 13.1.0-13.1.3.3, 14.1.0-14.1.2.5, and 15.0.0-15.1.0.3. The vulnerability allows an attacker to execute arbitrary code, steal sensitive data, or perform other malicious actions on the affected system. The vulnerability could lead to a full compromise of the system, and its exploitation is highly critical.

When exploited, the CVE-2020-5902 vulnerability could lead to devastating consequences, primarily because it allows an attacker to gain access to the entire system, including network resources and sensitive data. An attacker could steal user credentials, propagate malware, or disrupt the system's availability. In some cases, attackers could use the exploit to take control of the system and execute ransomware attacks, demanding payment for the release of encrypted data.

Thanks to the pro features of the s4e.io platform, readers of this article can easily and quickly learn about vulnerabilities in their digital assets. The platform provides real-time intelligence, alerts, and guidance on vulnerabilities and security threats that may affect digital assets. Its sophisticated threat detection and prevention features enable users to effectively manage and mitigate security risks in their systems. By using the s4e.io platform, organizations can strengthen their security posture and protect against serious threats such as the CVE-2020-5902 vulnerability.

 

REFERENCES

Solution Advice
To protect against the CVE-2020-5902 vulnerability, F5 Networks has released a patch that addresses the flaw. It is recommended that all affected systems install the patch as soon as possible. Additionally, users can take the following precautions:- Limit access to the BIG-IP TMUI interface to trusted IP addresses- Utilize host-based firewalls to restrict access to the system- Monitor network traffic for suspicious activity- Review logs and alert settings for potential threats- Perform regular vulnerability assessments and testing of systems

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.