CVE-2016-7472: Input Validation
Published Apr 3, 2018
·Updated
F5 BIG-IP ASM version 12.1.0 - 12.1.1 may allow remote attackers to cause a denial of service (DoS) via a crafted HTTP request.
Affected Software
2 affected components
F5 BIG-IP Application Security Manager=12.1.0
F5 BIG-IP Application Security Manager=12.1.1
Event History
Apr 3, 2018
CVE Published
via MITRE·01:00 PM
Data Sourced
via MITRE·01:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2016-7472?
CVE-2016-7472 has been classified as a high-severity vulnerability due to its potential to cause denial of service.
2
How do I fix CVE-2016-7472?
To mitigate CVE-2016-7472, you should upgrade to a version of F5 BIG-IP ASM that is not affected, such as versions later than 12.1.1.
3
What versions of F5 BIG-IP ASM are affected by CVE-2016-7472?
CVE-2016-7472 affects F5 BIG-IP ASM versions 12.1.0 and 12.1.1.
4
What kind of attack does CVE-2016-7472 enable?
CVE-2016-7472 allows remote attackers to execute a denial of service attack via crafted HTTP requests.
5
Is there a workaround for CVE-2016-7472 until I can upgrade?
There are no specific workarounds for CVE-2016-7472, so immediate upgrading is recommended.