Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-13942 | On F5OS, an improper authorization vulnerability exists where remotely authenticated users (LDAP, RADIUS, TACACS+) may be authorized with higher privilege F5OS roles. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated. |
| Link | Providers |
|---|---|
| https://my.f5.com/manage/s/article/K000139503 |
|
Tue, 21 Oct 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
F5
F5 f5os-a F5 f5os-c |
|
| CPEs | cpe:2.3:o:f5:f5os-a:1.5.1:*:*:*:*:*:*:* cpe:2.3:o:f5:f5os-c:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
F5
F5 f5os-a F5 f5os-c |
Mon, 14 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Thu, 08 May 2025 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 07 May 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | On F5OS, an improper authorization vulnerability exists where remotely authenticated users (LDAP, RADIUS, TACACS+) may be authorized with higher privilege F5OS roles. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated. | |
| Title | F5OS vulnerability | |
| Weaknesses | CWE-863 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: f5
Published:
Updated: 2026-02-26T18:28:43.559Z
Reserved: 2025-04-23T22:28:26.342Z
Link: CVE-2025-46265
Updated: 2025-05-08T12:59:33.687Z
Status : Analyzed
Published: 2025-05-07T22:15:21.020
Modified: 2025-10-21T18:01:47.027
Link: CVE-2025-46265
No data.
OpenCVE Enrichment
No data.
EUVD