CVE-2025-23239: BIG-IP iControl REST vulnerability
When running in Appliance mode, and logged into a highly-privileged role, an authenticated remote command injection vulnerability exists in an undisclosed iControl REST endpoint. A successful exploit can allow the attacker to cross a security boundary.
Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-23239?
CVE-2025-23239 has a high severity rating due to its potential to enable remote command injection from authenticated users.
How do I fix CVE-2025-23239?
To fix CVE-2025-23239, update to the latest version of F5 BIG-IP that includes security patches addressing this vulnerability.
What are the potential impacts of CVE-2025-23239?
The potential impacts of CVE-2025-23239 include unauthorized access to system commands and the ability to cross security boundaries.
Who is affected by CVE-2025-23239?
CVE-2025-23239 affects users of F5 BIG-IP running in Appliance mode with an exposed iControl REST endpoint.
Is there a workaround for CVE-2025-23239?
Currently, F5 has not provided specific workarounds for CVE-2025-23239, making it essential to apply the necessary updates as soon as possible.